CVE-2017-3216
20.06.2017, 00:29
WiMAX routers based on the MediaTek SDK (libmtk) that use a custom httpd plugin are vulnerable to an authentication bypass allowing a remote, unauthenticated attacker to gain administrator access to the device by performing an administrator password change on the device via a crafted POST request.Enginsight
Vendor | Product | Version |
---|---|---|
greenpacket | ox350_firmware | - |
huawei | bm2022_firmware | - |
huawei | hes-309m_firmware | - |
huawei | hes-319m_firmware | - |
huawei | hes-319m2w_firmware | - |
huawei | hes-339m_firmware | - |
mada | soho_wireless_router_firmware | - |
zte | ox-330p_firmware | - |
zyxel | max218m_firmware | - |
zyxel | max218m1w_firmware | - |
zyxel | max218mw_firmware | - |
zyxel | max308m_fimware | - |
zyxel | max318m_firmware | - |
zyxel | max338m_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References