vendor:
H64X Series
by:
Gjoko 'LiquidWorm' Krstic
7,5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: H64X Series
Affected Version From: 2.76-9999
Affected Version To: 2.45-1045
Patch Exists: YES
Related CWE: N/A
CPE: h:dasan_networks:h64x_series
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: lighttpd/1.4.31, DasanNetwork Solution
2017
Dasan Networks GPON ONT WiFi Router H64X Series Authentication Bypass
The vulnerable device does not properly perform authentication and authorization, allowing it to be bypassed through cookie manipulation. Setting the Cookie 'Grant' with value 1 (user) or 2 (admin) will bypass security controls in place enabling the attacker to take full control of the device management interface.
Mitigation:
Ensure that authentication and authorization controls are properly implemented and enforced.