vendor:
Modem Routers
by:
Eric Fajardo
7,5
CVSS
HIGH
Session Hijacking
287
CWE
Product Name: Modem Routers
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: DSL5018EN(1T1R) from Globe Telecom, DSL705E, DSL705EU
2014
Aztech Modem Broken Session Management Exploit
An attacker can exploit this issue to gain unauthorized access to the affected device. A successful authentication of a privilege (admin) ID in the web portal allows any attacker in the network to hijack and reuse the existing session in order to trick and allow the web server to execute administrative commands. The command may be freely executed from any terminal in the network as long as the session of the privilege ID is valid.
Mitigation:
Ensure that authentication credentials are not shared and that session tokens are properly managed.