First published: Fri Nov 28 2014(Updated: )
ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Arris VAP2500 | <=08.41 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-8424 is classified as a high severity vulnerability due to its potential to allow unauthorized remote access.
To mitigate CVE-2014-8424, upgrade the ARRIS VAP2500 firmware to version 08.42 or later.
CVE-2014-8424 is an authentication bypass vulnerability that affects the ARRIS VAP2500 device.
Users of the ARRIS VAP2500 with firmware versions prior to 08.42 are affected by CVE-2014-8424.
Yes, CVE-2014-8424 can be exploited remotely by attackers who can bypass authentication on the device.