First published: Wed Apr 01 2020(Updated: )
Yamaha LTE VoIP Router(NVR700W firmware Rev.15.00.15 and earlier), Yamaha Gigabit VoIP Router(NVR510 firmware Rev.15.01.14 and earlier), Yamaha Gigabit VPN Router(RTX810 firmware Rev.11.01.33 and earlier, RTX830 firmware Rev.15.02.09 and earlier, RTX1200 firmware Rev.10.01.76 and earlier, RTX1210 firmware Rev.14.01.33 and earlier, RTX3500 firmware Rev.14.00.26 and earlier, and RTX5000 firmware Rev.14.00.26 and earlier), Yamaha Broadband VoIP Router(NVR500 firmware Rev.11.00.38 and earlier), and Yamaha Firewall(FWX120 firmware Rev.11.03.27 and earlier) allow remote attackers to cause a denial of service via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Yamaha Rtx830 Firmware | <=15.02.09 | |
Yamaha Rtx830 | ||
Yamaha Nvr510 Firmware | <=15.01.14 | |
Yamaha Nvr510 | ||
Yamaha Nvr700w Firmware | <=15.00.15 | |
Yamaha Nvr700w | ||
Yamaha Rtx1210 Firmware | <=14.01.33 | |
Yamaha Rtx1210 | ||
Yamaha Rtx5000 Firmware | <=14.00.26 | |
Yamaha Rtx5000 | ||
Yamaha Rtx3500 Firmware | <=14.00.26 | |
Yamaha Rtx3500 | ||
Yamaha Fwx120 Firmware | <=11.03.27 | |
Yamaha Fwx120 | ||
Yamaha Rtx810 Firmware | <=11.01.33 | |
Yamaha Rtx810 | ||
Yamaha Nvr500 Firmware | <=11.00.38 | |
Yamaha Nvr500 | ||
Yamaha Rtx1200 Firmware | <=10.01.76 | |
Yamaha Rtx1200 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-5548 is high with a severity value of 7.5.
Yamaha LTE VoIP Router(NVR700W firmware Rev.15.00.15 and earlier), Yamaha Gigabit VoIP Router(NVR510 firmware Rev.15.01.14 and earlier), Yamaha Gigabit VPN Router(RTX810 firmware Rev.11.01.33 and earlier, RTX830 firmware Rev.15.02.09 and earlier, RTX1200 firmware Rev.10.01.76 and earlier, RTX1210 firmware Rev.14.01.33 and earlier), Yamaha RTX5000 Firmware Rev.14.00.26, Yamaha RTX3500 Firmware Rev.14.00.26, Yamaha FWX120 Firmware Rev.11.03.27, and Yamaha NVR500 Firmware Rev.11.00.38 are vulnerable to CVE-2020-5548.
The official reference for CVE-2020-5548 can be found at the following links: [link1](http://www.rtpro.yamaha.co.jp/RT/FAQ/Security/JVN38732359.html), [link2](https://jvn.jp/en/jp/JVN38732359/index.html).
To fix CVE-2020-5548, update the firmware of the affected Yamaha routers to the latest version provided by the manufacturer.
Yes, Yamaha Rtx830 with firmware version up to and including 15.02.09 is affected by CVE-2020-5548.