CVE-2017-10874: High severity ntt-east pwr-q200 vulnerability
Published Dec 1, 2017
·Updated
PWR-Q200 does not use random values for source ports of DNS query packets, which allows remote attackers to conduct DNS cache poisoning attacks.
Affected Software
2 affected components
Ntt-east Pwr-q200 Firmware
Ntt-east Pwr-q200
Event History
Dec 1, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability CVE-2017-10874?
CVE-2017-10874 is a vulnerability in the PWR-Q200 firmware that allows remote attackers to conduct DNS cache poisoning attacks.
2
How severe is CVE-2017-10874?
CVE-2017-10874 has a severity score of 7.5, which is considered high.
3
How can remote attackers exploit CVE-2017-10874?
Remote attackers can exploit CVE-2017-10874 by conducting DNS cache poisoning attacks.
4
What is the affected software for CVE-2017-10874?
The affected software for CVE-2017-10874 is the Ntt-east Pwr-q200 Firmware.
5
Is Ntt-east Pwr-q200 vulnerable to CVE-2017-10874?
No, Ntt-east Pwr-q200 is not vulnerable to CVE-2017-10874.
6
How can I fix CVE-2017-10874?
To fix CVE-2017-10874, it is recommended to update the PWR-Q200 firmware to a version that uses random values for source ports of DNS query packets.