Vulnerability Description
NETGEAR WNR1000v3 devices with firmware 1.0.2.68 use the same source port number for every DNS query, which makes it easier for remote attackers to spoof responses by selecting that number for the destination port.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netgear | Wnr1000V3 Firmware | 1.0.2.68 |
| Netgear | Wnr1000V3 | All versions |
References
- http://www.securityfocus.com/bid/78873
- https://www.kb.cert.org/vuls/id/403568Third Party AdvisoryUS Government Resource
- http://www.securityfocus.com/bid/78873
- https://www.kb.cert.org/vuls/id/403568Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2015-8263?
CVE-2015-8263 is a vulnerability with a CVSS score of 8.6 (HIGH). NETGEAR WNR1000v3 devices with firmware 1.0.2.68 use the same source port number for every DNS query, which makes it easier for remote attackers to spoof responses by selecting that number for the des...
How severe is CVE-2015-8263?
CVE-2015-8263 has been rated HIGH with a CVSS base score of 8.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-8263?
Check the references section above for vendor advisories and patch information. Affected products include: Netgear Wnr1000V3 Firmware, Netgear Wnr1000V3.