CVE-2011-4505
Last modified
CVE-2011-4505 is a vulnerability of currently unknown severity. The UPnP IGD implementation on SpeedTouch 5x6 devices with firmware before 6.2.29 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.. EPSS estimates a 1.43% chance of exploitation in the next 30 days.
Description
The UPnP IGD implementation on SpeedTouch 5x6 devices with firmware before 6.2.29 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Alcatel | Speedtouch 5x6 Router Firmware | <= 6.2 |
| Alcatel | Speedtouch 5x6 Router | All versions |
References
- http://www.kb.cert.org/vuls/id/357851US Government Resource
- http://www.kb.cert.org/vuls/id/357851US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-4505?
How severe is CVE-2011-4505?
How do I fix CVE-2011-4505?
Are you affected by CVE-2011-4505?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
