CVE-2002-0109: Medium severity LinkSys BEFSR41 vulnerability
Linksys EtherFast BEFN2PS4, BEFSR41, and BEFSR81 Routers, and possibly other products, allow remote attackers to gain sensitive information and cause a denial of service via an SNMP query for the default community string "public," which causes the router to change its configuration and send SNMP trap information back to the system that initiated the query.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0109?
The severity of CVE-2002-0109 is considered high due to the potential for remote exploitation leading to significant information disclosure and denial of service.
How do I fix CVE-2002-0109?
To fix CVE-2002-0109, change the default SNMP community string from 'public' to a more secure value and disable SNMP if it is not needed.
Which devices are affected by CVE-2002-0109?
CVE-2002-0109 affects Linksys EtherFast BEFN2PS4, BEFSR41, and BEFSR81 routers, among possibly other models.
Can CVE-2002-0109 allow remote access to my router?
Yes, CVE-2002-0109 allows remote attackers to exploit SNMP queries to gain sensitive information and manipulate router settings.
Is there a workaround for CVE-2002-0109?
A temporary workaround for CVE-2002-0109 includes restricting access to the router's management interface to trusted IP addresses only.