CVE-2013-6918

The web interface on the Satechi travel router 1.5, when Wi-Fi is used for WAN access, exposes the console without authentication on the WAN IP address regardless of the "Web Management via WAN" setting, which allows remote attackers to bypass intended access restrictions via HTTP requests.
Configurations

Configuration 1 (hide)

cpe:2.3:h:satechi:smart_travel_router:1.5:*:*:*:*:*:*:*

History

21 Nov 2024, 01:59

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2013-11/0123.html - () http://archives.neohapsis.com/archives/bugtraq/2013-11/0123.html -

Information

Published : 2013-11-30 11:43

Updated : 2024-11-21 01:59


NVD link : CVE-2013-6918

Mitre link : CVE-2013-6918

CVE.ORG link : CVE-2013-6918


JSON object : View

Products Affected

satechi

  • smart_travel_router
CWE
CWE-264

Permissions, Privileges, and Access Controls