News: Cexx forums, with volunteers dedicated to helping you remove malware and stay protected
 
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
April 16, 2014, 05:44:46
Pages: [1]   Go Down
  Print  
Topic: Linksys routers - security firmware updates  (Read 734 times)
0 Members and 1 Guest are viewing this topic.
« on: January 21, 2011, 05:20:11 »
AplusWebMaster Offline
Global Moderator WWW

Karma: 501
Posts: 7972



FYI...

Linksys WRT54GC vuln - firmware update available
- http://secunia.com/advisories/43017
Release Date: 2011-01-21
Criticality level: Moderately critical
Impact: System access
CVE Reference: CVE-2011-0352
... The vulnerability is reported in versions prior to 1.06.1.
Solution Status: Vendor Patch
Solution: Update to firmware version 1.06.1.

- http://homedownloads.cisco.com/downloads/WRT54GCv1_release_notes.txt

- http://homesupport.cisco.com/en-US/wireless/lbc/WRT54GC/

 Exclamation
Logged

This machine has no brain.
....... Use your own.
Browser check for updates here.
.
« Reply #1 on: November 28, 2011, 08:35:23 »
AplusWebMaster Offline
Global Moderator WWW

Karma: 501
Posts: 7972



FYI...

Cisco Linksys router WRT54G WRT54GX UPnP vuln ...
- http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-4499
Last revised: 11/22/2011
CVSS v2 Base Score: 7.5 (HIGH)
"... Cisco Linksys WRT54G* with firmware before 4.30.5, WRT54GS v1 through v3 with firmware before 4.71.1, and WRT54GS v4 with firmware before 1.06.1.."

- http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-4500
Last revised: 11/22/2011
CVSS v2 Base Score: 7.5 (HIGH)
"... Cisco Linksys WRT54GX* with firmware 2.00.05, when UPnP is enabled..."

- http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-4501
- http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-4502
"... Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with firmware 1.83, Canyon-Tech CN-WF514 with firmware 2.08, Sitecom WL-153 with firmware before 1.39, and Sweex LB000021 with firmware 3.15..."

- http://www.kb.cert.org/vuls/id/357851
Last Updated: 2011-10-07 - "... Workarounds: Disable UPnP* on the device..."

* http://192.168.1.1/Manage.htm
... Administration - UPnP: > Disable...

- http://www.upnp-hacks.org/devices.html#linksys
___

- http://h-online.com/-1329727
24 August 2011

 Exclamation
« Last Edit: November 28, 2011, 10:26:29 by AplusWebMaster » Logged

This machine has no brain.
....... Use your own.
Browser check for updates here.
.
 
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by SMF 1.1.19 | SMF © 2013, Simple Machines Page created in 0.628 seconds with 20 queries.