PT-2023-13505 · Mr2600 · Mr2600
CVE-2022-3681
·
Publicado
2023-10-27
·
Atualizado
2023-11-07
CVSS v3.1
6.5
Média
| Vetor | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
MR2600 router versions 1.0.18 and earlier
Description
A vulnerability has been identified that could allow an attacker within range of the wireless network to successfully brute force the WPS pin, potentially allowing them unauthorized access to a wireless network.
Recommendations
For MR2600 router versions 1.0.18 and earlier, consider disabling the WPS feature as a temporary workaround until a patch is available. Restrict access to the wireless network to minimize the risk of exploitation.
Correção
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Mr2600