7.5
CVSSv2

CVE-2011-4499

Published: 22/11/2011 Updated: 09/03/2012
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The UPnP IGD implementation in the Broadcom UPnP stack on the Cisco Linksys WRT54G with firmware prior to 4.30.5, WRT54GS v1 through v3 with firmware prior to 4.71.1, and WRT54GS v4 with firmware prior to 1.06.1 allows remote malicious users to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco linksys_wrt54g_router_firmware 3.03.9

cisco linksys_wrt54g_router_firmware 4.20.7

cisco linksys_wrt54g_router_firmware

linksys wrt54g 2.2

linksys wrt54g

cisco linksys_wrt54gs_router_firmware 2.09.1

cisco linksys_wrt54gs_router_firmware

linksys wrt54gs 1.0

linksys wrt54gs 2.0

linksys wrt54gs 3.0

linksys wrt54gs 4.0