vendor:
JioFi 4G Hotspot M2S 150 Mbps Wireless Router
by:
Vikas Chaudhary
6.5
CVSS
MEDIUM
Denial of Service (DoS)
400
CWE
Product Name: JioFi 4G Hotspot M2S 150 Mbps Wireless Router
Affected Version From: JioFi 4G Hotspot M2S 150 Mbps Wireless Router
Affected Version To: JioFi 4G Hotspot M2S 150 Mbps Wireless Router
Patch Exists: YES
Related CWE: CVE-2019-7439
CPE: h:jio:jiofi_4g_hotspot_m2s_150_mbps_wireless_router
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10 X64- Firefox-65.0
2019
cgi-bin/qcmap_web_cgi on JioFi 4G M2S 1.0.2 devices allows a DoS (Hang) via the mask POST parameter
A denial-of-service attack (DoS attack) is a cyber-attack in which the perpetrator seeks to make a machine or network resource unavailable to its intended users by temporarily or indefinitely disrupting services of a host connected to the Internet. Denial of service is typically accomplished by flooding the targeted machine or resource with superfluous requests in an attempt to overload systems and prevent some or all legitimate requests from being fulfilled.
Mitigation:
Implementing a firewall and intrusion detection system can help mitigate the risk of DoS attacks.