Lucene search

K
cveMitreCVE-2011-4503
HistoryNov 22, 2011 - 11:55 a.m.

CVE-2011-4503

2011-11-2211:55:05
CWE-16
mitre
web.nvd.nist.gov
26
cve-2011-4503
sitecom wl-111
upnp
igd
broadcom linux
remote attack
port mappings
soap request
wan interface
vulnerability
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7

Confidence

Low

EPSS

0.005

Percentile

76.4%

The UPnP IGD implementation in Broadcom Linux on the Sitecom WL-111 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an “external forwarding” vulnerability.

Affected configurations

Nvd
Node
broadcombroadcom_linux
AND
sitecomwl-111Match-
VendorProductVersionCPE
broadcombroadcom_linux*cpe:2.3:o:broadcom:broadcom_linux:*:*:*:*:*:*:*:*
sitecomwl-111-cpe:2.3:h:sitecom:wl-111:-:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7

Confidence

Low

EPSS

0.005

Percentile

76.4%

Related for CVE-2011-4503