CVE-2008-7115

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
28/08/2009
Last modified:
29/09/2017

Description

The web interface to the Belkin Wireless G router and ADSL2 modem F5D7632-4V6 with firmware 6.01.08 allows remote attackers to bypass authentication and gain administrator privileges via a direct request to (1) statusprocess.exe, (2) system_all.exe, or (3) restore.exe in cgi-bin/. NOTE: the setup_dns.exe vector is already covered by CVE-2008-1244.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:belkin:f5d7632-4:6.01.08:*:*:*:*:*:*:*
cpe:2.3:h:belkin:wireless_g_router:*:*:*:*:*:*:*:*