Description
WiMAX routers based on the MediaTek SDK (libmtk) that use a custom httpd plugin are vulnerable to an authentication bypass allowing a remote, unauthenticated attacker to gain administrator access to the device by performing an administrator password change on the device via a crafted POST request.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-12337 | WiMAX routers based on the MediaTek SDK (libmtk) that use a custom httpd plugin are vulnerable to an authentication bypass allowing a remote, unauthenticated attacker to gain administrator access to the device by performing an administrator password change on the device via a crafted POST request. |
References
History
No history.
Subscriptions
Greenpacket
Subscribe
Ox350
Subscribe
Ox350 Firmware
Subscribe
Huawei
Subscribe
Bm2022
Subscribe
Bm2022 Firmware
Subscribe
Hes-309m
Subscribe
Hes-309m Firmware
Subscribe
Hes-319m
Subscribe
Hes-319m2w
Subscribe
Hes-319m2w Firmware
Subscribe
Hes-319m Firmware
Subscribe
Hes-339m
Subscribe
Hes-339m Firmware
Subscribe
Mada
Subscribe
Soho Wireless Router
Subscribe
Soho Wireless Router Firmware
Subscribe
Zte
Subscribe
Ox-330p
Subscribe
Ox-330p Firmware
Subscribe
Zyxel
Subscribe
Max218m
Subscribe
Max218m1w
Subscribe
Max218m1w Firmware
Subscribe
Max218m Firmware
Subscribe
Max218mw
Subscribe
Max218mw Firmware
Subscribe
Max308m
Subscribe
Max308m Fimware
Subscribe
Max318m
Subscribe
Max318m Firmware
Subscribe
Max338m
Subscribe
Max338m Firmware
Subscribe
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2024-08-05T14:16:28.271Z
Reserved: 2016-12-05T00:00:00.000Z
Link: CVE-2017-3216
No data.
Status : Deferred
Published: 2017-06-20T00:29:00.267
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-3216
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD