Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-1259

Опубликовано: 10 мар. 2008
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

The Zyxel P-2602HW-D1A router with 3.40(AJZ.1) firmware maintains authentication state by IP address, which allows remote attackers to bypass authentication by establishing a session from a source IP address of a user who previously authenticated within the previous 5 minutes.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:h:zyxel:p-2602hw-d1a:*:*:3.40\(ajz.1\):*:*:*:*:*

EPSS

Процентиль: 50%
0.00273
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-287

Связанные уязвимости

github
почти 4 года назад

The Zyxel P-2602HW-D1A router with 3.40(AJZ.1) firmware maintains authentication state by IP address, which allows remote attackers to bypass authentication by establishing a session from a source IP address of a user who previously authenticated within the previous 5 minutes.

EPSS

Процентиль: 50%
0.00273
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-287