Nortel VPN Router (aka Contivity) 1000, 2000, 4000, and 5000 prior to 5_05.149, 5_05.3xx prior to 5_05.304, and 6.x prior to 6_05.140 has two template HTML files lacking certain verification tags, which allows remote malicious users to access the administration interface and change the device configuration via certain requests.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nortel contivity 2000_vpn_switch |
||
nortel contivity 4000_vpn_switch |
||
nortel contivity 1000_vpn_switch |
||
nortel vpn router 5000 |