| Vuln ID | Summary | CVSS Severity |
|---|---|---|
| CVE-2011-4502 |
The UPnP IGD implementation in Edimax EdiLinux on the Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with firmware 1.83, Canyon-Tech CN-WF514 with firmware 2.08, Sitecom WL-153 with firmware before 1.39, and Sweex LB000021 with firmware 3.15 allows remote attackers to execute arbitrary commands via shell metacharacters. Published: November 22, 2011; 6:55:05 AM -0500 |
V3.x:(not available) V2.0: 10.0 HIGH |
| CVE-2011-4501 |
The UPnP IGD implementation in Edimax EdiLinux on the Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with firmware 1.83, Canyon-Tech CN-WF514 with firmware 2.08, Sitecom WL-153 with firmware before 1.39, and Sweex LB000021 with firmware 3.15 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability. Published: November 22, 2011; 6:55:04 AM -0500 |
V3.x:(not available) V2.0: 10.0 HIGH |
| CVE-2006-2560 |
Sitecom WL-153 router firmware before 1.38 allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic. Published: May 23, 2006; 9:02:00 PM -0400 |
V3.x:(not available) V2.0: 7.5 HIGH |