CVE
- Id
- 18664
- CVE No.
- CVE-2006-2560
- Status
- Candidate
- Description
- Sitecom WL-153 router firmware before 1.38 allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.
- Phase
- Assigned (20060523)
- Votes
- None (candidate not yet proposed)
- Comments