An issue was discovered on SendQuick Entera and Avera devices before 2HF16. The application failed to check the access control of the request which could result in an attacker being able to shutdown the system.
References
| Link | Resource |
|---|---|
| https://niantech.io/blog/2017/02/05/vulns-multiple-vulns-in-sendquick-entera-avera-sms-gateway-appliances/ | Third Party Advisory |
| http://www.securityfocus.com/bid/96031 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2017-02-05 18:59
Updated : 2019-10-03 00:03
NVD link : CVE-2017-5136
Mitre link : CVE-2017-5136
JSON object : View
Products Affected
sendquick
- avera_sms_gateway
- entera_sms_gateway_firmware
- entera_sms_gateway
- avera_sms_gateway_firmware
CWE
CWE-862
Missing Authorization
