CVE-2011-4505: High severity alcatel speedtouch 5x6 router firmware vulnerability
The UPnP IGD implementation on SpeedTouch 5x6 devices with firmware before 6.2.29 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4505?
CVE-2011-4505 has a medium severity rating due to its potential to allow unauthorized port mapping.
How do I fix CVE-2011-4505?
To fix CVE-2011-4505, upgrade the SpeedTouch 5x6 router firmware to version 6.2.29 or later.
What devices are affected by CVE-2011-4505?
CVE-2011-4505 specifically affects SpeedTouch 5x6 devices with firmware versions prior to 6.2.29.
Can CVE-2011-4505 be exploited remotely?
Yes, CVE-2011-4505 can be exploited remotely by sending crafted SOAP requests to the WAN interface.
What is the primary risk associated with CVE-2011-4505?
The primary risk of CVE-2011-4505 is that it allows attackers to create arbitrary port mappings, potentially leading to unauthorized access.