Vulnerability Description
BT Voyager 2091 Wireless firmware 2.21.05.08m_A2pB018c1.d16d and earlier, and 3.01m and earlier, allow remote attackers to bypass the authentication process and gain sensitive information, such as configuration information via (1) /btvoyager_getconfig.sh, PPP credentials via (2) btvoyager_getpppcreds.sh, and decode configuration credentials via (3) btvoyager_decoder.c.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bt | Voyager 2091 Wireless Adsl Router | <= 2.21.05.08m_a2pb018c1.d16d |
Related Weaknesses (CWE)
References
- http://ikwt.dyndns.org/projects/btvoyager-getconfig.txtExploit
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/047733.html
- http://secunia.com/advisories/20982Vendor Advisory
- http://www.gnucitizen.org/blog/holes-in-embedded-devices-authentication-bypass-p
- http://www.gnucitizen.org/projects/router-hacking-challenge/
- http://www.securityfocus.com/archive/1/440405/100/0/threaded
- http://www.securityfocus.com/archive/1/489009/100/0/threaded
- http://www.securityfocus.com/bid/19057
- http://www.vupen.com/english/advisories/2006/2734
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27652
- http://ikwt.dyndns.org/projects/btvoyager-getconfig.txtExploit
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/047733.html
- http://secunia.com/advisories/20982Vendor Advisory
- http://www.gnucitizen.org/blog/holes-in-embedded-devices-authentication-bypass-p
- http://www.gnucitizen.org/projects/router-hacking-challenge/
FAQ
What is CVE-2006-3561?
CVE-2006-3561 is a vulnerability with a CVSS score of 5.0 (MEDIUM). BT Voyager 2091 Wireless firmware 2.21.05.08m_A2pB018c1.d16d and earlier, and 3.01m and earlier, allow remote attackers to bypass the authentication process and gain sensitive information, such as con...
How severe is CVE-2006-3561?
CVE-2006-3561 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-3561?
Check the references section above for vendor advisories and patch information. Affected products include: Bt Voyager 2091 Wireless Adsl Router.