CVE-2008-1334: High severity bt home hub vulnerability
cgi/b on the BT Home Hub router allows remote attackers to bypass authentication, and read or modify administrative settings or make arbitrary VoIP telephone calls, by placing a character at the end of the PATHINFO, as demonstrated by (1) %5C (encoded backslash), (2) '%' (percent), and (3) '~' (tilde). NOTE: the '/' (slash) vector is already covered by CVE-2007-5383.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1334?
CVE-2008-1334 has a high severity rating due to the potential for remote attackers to bypass authentication and compromise router settings.
How do I fix CVE-2008-1334?
To fix CVE-2008-1334, update the firmware of your BT Home Hub router to the latest version provided by the manufacturer.
What types of attacks can exploit CVE-2008-1334?
CVE-2008-1334 can be exploited to read or modify administrative settings and make arbitrary VoIP calls by bypassing authentication.
Which devices are affected by CVE-2008-1334?
CVE-2008-1334 affects the BT Home Hub router models.
What are the consequences of CVE-2008-1334 being exploited?
If exploited, CVE-2008-1334 can lead to unauthorized access to administrative settings and potential misuse of call features.