Back to Database
Status published
High
CVE-2017-10874
PWR-Q200 does not use random values for source ports of...
Vulnerability Description
PWR-Q200 does not use random values for source ports of DNS query packets, which allows remote attackers to conduct DNS cache poisoning attacks.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-10874
Credits & Attribution
No credits recorded in the NVD database.
References
More from NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION
View All →CVE-2024-47044
Multiple Home GateWay/Hikari Denwa routers provided by NIPPON TELEGRAPH AND...
Unknown
0
CVE-2018-0563
Untrusted search path vulnerability in the installer of FLET'S VIRUS...
High
7.8
CVE-2018-0515
Untrusted search path vulnerability in "FLET'S Azukeru Backup Tool" version...
High
7.8
CVE-2018-0507
Untrusted search path vulnerability in FLET'S VIRUS CLEAR Easy Setup...
High
7.8
CVE-2017-10829
Untrusted search path vulnerability in Remote Support Tool (Enkaku Support...
High
7.8
Affected Vendor
NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION
View all reports →Affected Software
PWR-Q200
Vulnerable Versions:
all firmware versions
Timeline
Official Publish:
December 1st, 2017
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.