First published: Fri Aug 10 2001(Updated: )
LinkSys EtherFast BEFSR41 Cable/DSL routers running firmware before 1.39.3 Beta allows a remote attacker to view administration and user passwords by connecting to the router and viewing the HTML source for (1) index.htm and (2) Password.htm.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linksys BEFSR41 | =1.36 | |
Linksys BEFSR41 | =1.35 | |
Linksys BEFSR41 | =1.38.5 | |
Linksys BEFSR41 | =1.37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1117 is considered a high severity vulnerability due to its potential to expose sensitive information such as administration and user passwords.
To fix CVE-2001-1117, update the LinkSys BEFSR41 router firmware to version 1.39.3 Beta or later.
CVE-2001-1117 affects LinkSys EtherFast BEFSR41 Cable/DSL routers running firmware versions earlier than 1.39.3 Beta.
Yes, CVE-2001-1117 can be exploited remotely by an attacker with access to the network.
CVE-2001-1117 allows an attacker to view administration and user passwords in the HTML source of the affected router's pages.