Lucene search

K
cve[email protected]CVE-2012-1250
HistoryJun 04, 2012 - 5:55 p.m.

CVE-2012-1250

2012-06-0417:55:01
CWE-264
web.nvd.nist.gov
27
logitec
lan-w300n/r
routers
firmware
security vulnerability
remote access
admin privileges
pppoe authentication
cve-2012-1250

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.01 Low

EPSS

Percentile

83.9%

Logitec LAN-W300N/R routers with firmware before 2.27 do not properly restrict login access, which allows remote attackers to obtain administrative privileges and modify settings via vectors related to PPPoE authentication.

Affected configurations

NVD
Node
logitechlan-w300n\/ru2_firmwareRange<2.27
AND
logitechlan-w300n\/rMatch-
OR
logitechlan-w300n\/rsMatch-
OR
logitechlan-w300n\/ru2Match-

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.01 Low

EPSS

Percentile

83.9%

Related for CVE-2012-1250