CVE-2011-4506 Information
Feb 14, 2021
cve
Description
The UPnP IGD implementation on the Thomson (aka Technicolor) TG585 with firmware 7.x before 7.4.3.2 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface related to an \external forwarding\ vulnerability.
Reference
http://toor.do/DEFCON-19-Garcia-UPnP-Mapping-WP.pdf http://www.kb.cert.org/vuls/id/357851
Share on: