CVE-2011-4506
Last modified
CVE-2011-4506 is a vulnerability of currently unknown severity. The UPnP IGD implementation on the Thomson (aka Technicolor) TG585 with firmware 7.x before 7.4.3.2 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.. EPSS estimates a 1.43% chance of exploitation in the next 30 days.
Description
The UPnP IGD implementation on the Thomson (aka Technicolor) TG585 with firmware 7.x before 7.4.3.2 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Technicolor | Tg585 Router Firmware | <= 7.4 |
| Technicolor | Tg585 Router | All versions |
References
- http://www.kb.cert.org/vuls/id/357851US Government Resource
- http://www.kb.cert.org/vuls/id/357851US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-4506?
How severe is CVE-2011-4506?
How do I fix CVE-2011-4506?
Are you affected by CVE-2011-4506?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
