CVE-2019-18989: Medium severity mediatek mt7620n firmware vulnerability
A partial authentication bypass vulnerability exists on Mediatek MT7620N 1.06 devices. The vulnerability allows sending an unencrypted data frame to a WPA2-protected WLAN router where the packet is routed through the network. If successful, a response is sent back as an encrypted frame, which would allow an attacker to discern information or potentially modify data.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-18989?
CVE-2019-18989 has been classified with a moderate severity level due to its potential impact on network security.
How do I fix CVE-2019-18989?
To mitigate CVE-2019-18989, secure your WLAN router with strong authentication settings and consider updating to a firmware version that addresses this vulnerability.
What devices are affected by CVE-2019-18989?
CVE-2019-18989 specifically affects Mediatek MT7620N devices running firmware version 1.06.
What kind of attack does CVE-2019-18989 enable?
CVE-2019-18989 allows attackers to bypass authentication and send unencrypted data frames to WPA2-protected routers.
Is there a known exploit for CVE-2019-18989?
There is currently no publicly available exploit for CVE-2019-18989, but the vulnerability poses a risk if left unaddressed.