vendor:
N3 Wireless N150 Routers
by:
Mandeep Jadon
9,8
CVSS
CRITICAL
Authentication Bypass
287
CWE
Product Name: N3 Wireless N150 Routers
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: CVE-2015-5995
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2015
Complete Authentication Bypass In Tenda N3 Wireless N150 Routers
The router (AP) is using very poor authentication mechanism. It uses a static cookie to verify the incoming authentication. After careful inspection it was found that the cookie used were same for any number of authentication by the Admin. Thus the cookie can be easily forged and the admin account could be compromised without supplying the credentials.
Mitigation:
Use a secure authentication mechanism consisting of random, complex cookies.