CVE-2019-6015 Vulnerability Details

  /     /     /  

CVE-2019-6015 Metadata Quick Info

CVE Published: 04/10/2019 | CVE Updated: 04/08/2024 | CVE Year: 2019
Source: jpcert | Vendor: FON Wireless Limited | Product: FON2601E-SE, FON2601E-RE, FON2601E-FSW-S, and FON2601E-FSW-B
Status : PUBLISHED

CVE-2019-6015 Description

FON2601E-SE, FON2601E-RE, FON2601E-FSW-S, and FON2601E-FSW-B with firmware versions 1.1.7 and earlier contain an issue where they may behave as open resolvers. If this vulnerability is exploited, FON routers may be leveraged for DNS amplification attacks to some other entities.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: DNS amplification attacks
Source: FON Wireless Limited

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).