vendor:
N11 Wireless Router
by:
Todor Donev
4.3
CVSS
MEDIUM
Cookie Session Weakness
N/A
CWE
Product Name: N11 Wireless Router
Affected Version From: V5.07.43_en_NEX01
Affected Version To: V5.07.43_en_NEX01
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: N/A
2018
Tenda N11 Wireless Router V5.07.43_en_NEX01 Cookie Session Weakness Remote DNS Change PoC Exploit
Once modified, systems use foreign DNS servers, which are usually set up by cybercriminals. Users with vulnerable systems or devices who try to access certain sites are instead redirected to possibly malicious sites. Modifying systems' DNS settings allows cybercriminals to perform malicious activities like steering unknowing users to bad sites, replacing ads on legitimate sites, controlling and redirecting network traffic, and pushing additional malware.
Mitigation:
Users should ensure that their systems are updated with the latest security patches and that their devices are running the latest firmware version.