CVE-2016-1206: Infoleak
The WPS implementation on I-O DATA DEVICE WN-GDN/R3, WN-GDN/R3-C, WN-GDN/R3-S, and WN-GDN/R3-U devices does not limit PIN guesses, which allows remote attackers to obtain network access via a brute-force attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1206?
CVE-2016-1206 is considered a high-severity vulnerability due to its potential to allow unauthorized access to network devices via brute-force attacks.
How do I fix CVE-2016-1206?
To mitigate CVE-2016-1206, it is recommended to upgrade the firmware of affected I-O DATA DEVICE WN-GDN/R3 models to the latest version provided by the manufacturer.
What devices are affected by CVE-2016-1206?
CVE-2016-1206 affects I-O DATA DEVICE WN-GDN/R3, WN-GDN/R3-C, WN-GDN/R3-S, and WN-GDN/R3-U models.
How does CVE-2016-1206 allow unauthorized access?
CVE-2016-1206 allows unauthorized access by not limiting the number of PIN guesses, enabling attackers to perform brute-force attacks.
Is CVE-2016-1206 a local or remote vulnerability?
CVE-2016-1206 is a remote vulnerability, allowing attackers to exploit the weakness over the network.