CVE-2008-1264: High severity cisco linksys wrt54g router firmware vulnerability
Published Mar 10, 2008
·Updated
The Linksys WRT54G router has "admin" as its default FTP password, which allows remote attackers to access sensitive files including nvram.cfg, a file that lists all HTML documents, and an ELF executable file.
Affected Software
1 affected component
LinkSys WRT54G
Event History
Mar 10, 2008
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1264?
The severity of CVE-2008-1264 is considered high due to the ease with which remote attackers can exploit the default FTP password.
2
How do I fix CVE-2008-1264?
To fix CVE-2008-1264, change the default FTP password from 'admin' to a strong, unique password.
3
What can attackers access through CVE-2008-1264?
Attackers can access sensitive files including nvram.cfg, which contains configuration data and sensitive information.
4
Which devices are affected by CVE-2008-1264?
CVE-2008-1264 specifically affects the Linksys WRT54G router models.
5
Is CVE-2008-1264 still a concern today?
Yes, CVE-2008-1264 remains a concern for devices that have not been updated or have not had their default passwords changed.