This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to presence of root terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by accessing the root shell on the vulnerable system.

Successful exploitation of this vulnerability could allow the attacker to execute arbitrary commands with root privileges on the targeted system.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-39137 This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to presence of root terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by accessing the root shell on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to execute arbitrary commands with root privileges on the targeted system.
Fixes

Solution

Upgrade SyroTech SY-GPON-1110-WDONT Router firmware to patched version 3.1.02-240517 http://drive.google.com/file/d/1JQc3AkJm69mV0kg2c-b-zzaojc87Rru9/view


Workaround

No workaround given by the vendor.

History

Fri, 22 Nov 2024 12:00:00 +0000


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: CERT-In

Published:

Updated: 2024-08-02T04:46:52.682Z

Reserved: 2024-07-19T11:24:20.421Z

Link: CVE-2024-41692

cve-icon Vulnrichment

Updated: 2024-07-26T12:54:14.671Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-26T13:15:09.947

Modified: 2024-11-21T09:32:59.197

Link: CVE-2024-41692

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses