CVE-2002-1312

3 documents3 sources
Severity
5.0MEDIUM
EPSS
1.2%
top 20.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 20
Latest updateApr 30

Description

Buffer overflow in the Web management interface in Linksys BEFW11S4 wireless access point router 2 and BEFSR11, BEFSR41, and BEFSRU31 EtherFast Cable/DSL routers with firmware before 1.43.3 with remote management enabled allows remote attackers to cause a denial of service (router crash) via a long password.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages9 packages

NVDlinksys/befsr111.42.7, 1.43+1
NVDlinksys/befsr411.42.7, 1.43+1
NVDlinksys/befsru311.42.7, 1.43+1
NVDlinksys/befw11s41.4.2.7, 1.4.3+1
NVDlinksys/befsr812.42.7.1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pcmr-f7vq-p97c: Buffer overflow in the Web management interface in Linksys BEFW11S4 wireless access point router 2 and BEFSR11, BEFSR41, and BEFSRU31 EtherFast Cable/2022-04-30
CVEList
CVE-2002-1312: Buffer overflow in the Web management interface in Linksys BEFW11S4 wireless access point router 2 and BEFSR11, BEFSR41, and BEFSRU31 EtherFast Cable/2005-04-14
CVE-2002-1312 (MEDIUM CVSS 5) | Buffer overflow in the Web manageme | cvebase.io