Telesquare SKT LTE Router SDT-CS3B1 Unauthenticated Remote Reboot
Vulnerability Description
Telesquare SKT LTE Router SDT-CS3B1 software version 1.2.0 contains an unauthenticated remote reboot vulnerability that allows attackers to trigger device reboot without authentication. Attackers can send POST requests to the lte.cgi endpoint with the Command=Reboot parameter to cause denial of service by forcing the router to restart.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-20222
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- LiquidWorm as Gjoko Krstic of Zero Science Lab
References
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5444.php
- https://cxsecurity.com/issue/WLB-2017120300
- https://packetstormsecurity.com/files/145555
- https://www.exploit-db.com/exploits/43401/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/136825
- https://www.vulncheck.com/advisories/telesquare-skt-lte-router-sdt-cs3b1-unauthenticated-remote-reboot
More from Telesquare
View All →Affected Vendor
Telesquare
View all reports →