CVE-2015-5989: Critical severity zyxel gs1900-10hp firmware vulnerability
Belkin F9K1102 2 devices with firmware 2.10.17 rely on client-side JavaScript code for authorization, which allows remote attackers to obtain administrative privileges via certain changes to LockStatus and LoginSuccess values.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-5989?
CVE-2015-5989 has been rated as high severity due to the potential for remote attackers to gain unauthorized administrative access.
How do I fix CVE-2015-5989?
To fix CVE-2015-5989, update the Belkin F9K1102 firmware to a version that addresses this vulnerability.
What systems are affected by CVE-2015-5989?
CVE-2015-5989 specifically affects the Belkin F9K1102 router running firmware version 2.10.17.
What is the nature of the vulnerability in CVE-2015-5989?
The vulnerability in CVE-2015-5989 arises from reliance on client-side JavaScript for authorization, allowing manipulation of session variables.
Can CVE-2015-5989 be exploited remotely?
Yes, CVE-2015-5989 can be exploited remotely, allowing attackers to gain administrative privileges without physical access.