CVE-2001-1484: High severity Alcatel Speed Touch Adsl Modem vulnerability
Alcatel ADSL modems allow remote attackers to access the Trivial File Transfer Protocol (TFTP) to modify firmware and configuration via a bounce attack from a system on the local area network (LAN) side, which is allowed to access TFTP without authentication.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2001-1484?
CVE-2001-1484 is considered a high severity vulnerability due to its potential for exploitation by remote attackers.
How do I fix CVE-2001-1484?
To mitigate CVE-2001-1484, disable TFTP access on the Alcatel ADSL modems or configure strict access controls.
What components are affected by CVE-2001-1484?
CVE-2001-1484 affects the Alcatel Speed Touch ADSL modem and Alcatel ADSL Modem 1000.
Can CVE-2001-1484 be exploited remotely?
Yes, CVE-2001-1484 can be exploited remotely via a bounce attack from a local area network system.
What actions can an attacker perform due to CVE-2001-1484?
An attacker exploiting CVE-2001-1484 can modify the firmware and configuration of the ADSL modem without authentication.