CVE-2017-20222: Telesquare SKT LTE Router SDT-CS3B1 Unauthenticated Remote Reboot
Telesquare SKT LTE Router SDT-CS3B1 software version 1.2.0 contains an unauthenticated remote reboot vulnerability that allows attackers to trigger device reboot without authentication. Attackers can send POST requests to the lte.cgi endpoint with the Command=Reboot parameter to cause denial of service by forcing the router to restart.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-20222?
CVE-2017-20222 is classified as a critical vulnerability due to its potential for unauthenticated remote access to reboot devices.
How do I fix CVE-2017-20222?
To fix CVE-2017-20222, update the Telesquare SKT LTE Router SDT-CS3B1 to the latest firmware version that addresses this vulnerability.
What impact does CVE-2017-20222 have on the Telesquare SKT LTE Router SDT-CS3B1?
CVE-2017-20222 allows attackers to remotely reboot the router without any authentication, potentially leading to denial of service.
Who is affected by CVE-2017-20222?
Users of the Telesquare SKT LTE Router SDT-CS3B1 running software version 1.2.0 are affected by CVE-2017-20222.
Is CVE-2017-20222 a common vulnerability?
While CVE-2017-20222 is specific to Telesquare devices, similar unauthenticated vulnerabilities are commonly found in many IoT and network devices.