vendor:
ZXHN H108L
by:
Project Zero
5,5
CVSS
MEDIUM
Authentication Bypass
287
CWE
Product Name: ZXHN H108L
Affected Version From: ZXHN H108LV4.0.0d_ZRQ_GR4
Affected Version To: ZXHN H108LV4.0.0d_ZRQ_GR4
Patch Exists: NO
Related CWE: N/A
CPE: h:zte:zxhn_h108l
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2014
ZTE ZXHN H108L Authentication Bypass
The described vulnerability allows any unauthenticated user to edit the CWMP configuration. Exploitation can be performed by LAN users or through the Internet if the router is configured to expose the web interface to WAN. Also because the router lacks of CSRF protection, malicious JS code can be deployed in order to exploit the vulnerability through a malicious web page.
Mitigation:
Implement authentication for CWMP configuration