[Japanese] | |
JVNDB-2015-000117 | |
Multiple I-O DATA LAN routers vulnerable in UPnP functionality | |
Overview | |
A wired LAN router NP-BBRS and a wireless LAN router WN-G54/R2 provided by I-O DATA DEVICE, INC. contain a vulnerability in the UPnP functionality. | |
CVSS Severity (What is CVSS?) | |
CVSS V2 Severity:
Base Metrics 5.0 (Medium) [IPA Score]
| |
Affected Products | |
| |
I-O DATA DEVICE, INC. | |
| |
Impact | |
The device may be used in a DDoS attack, as a SSDP reflector. | |
Solution | |
For NP-BBRS: | |
Vendor Information | |
I-O DATA DEVICE, INC. | |
CWE (What is CWE?) | |
| |
CVE (What is CVE?) | |
| |
References | |
| |
Revision History | |
|
Date Public | 2015/08/18 |
Date First Published | 2015/08/18 |
Date Last Updated | 2015/08/28 |