CVE-2004-2606: High severity LinkSys Befsr41 V3 vulnerability
The Web interface in Linksys WRT54G 2.02.7 and BEFSR41 version 3, with the firewall disabled, allows remote attackers to attempt to login to an administration web page, even when the configuration specifies that remote administration is disabled.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-2606?
CVE-2004-2606 has a low severity rating but poses a risk as it can allow unauthorized login attempts to the administration web page.
How do I fix CVE-2004-2606?
To mitigate CVE-2004-2606, ensure that remote administration features are disabled and apply the latest firmware updates from Linksys.
Who is affected by CVE-2004-2606?
CVE-2004-2606 affects users of Linksys WRT54G version 2.02.7 and BEFSR41 version 3 with the firewall disabled.
What is the impact of CVE-2004-2606?
The impact of CVE-2004-2606 is that remote attackers may exploit it to attempt unauthorized access to the router's admin interface.
Is CVE-2004-2606 easy to exploit?
Yes, CVE-2004-2606 can be exploited easily by remote attackers due to misconfigured settings on affected devices.