Multiple vulnerabilities are reported to affect the Gigafast EE400-R router. The following individual vulnerabilities are reported: An information disclosure vulnerability is reported to affect the router. It is reported that an authentication interface exists on the appliance, but a direct request for a backup configuration file is permitted without requiring authentication. Information that is harvested by exploiting this vulnerability may be used to aid in further attacks that are launched against the target appliance. A remote denial of service vulnerability is reported to affect the Gigafast router. It is reported that when the certain functionality is enabled the affected router, the router will crash when a malformed DNS query is handled. A remote attacker may exploit this vulnerability to deny network services for legitimate users.
Multiple vulnerabilities are reported to affect the Gigafast EE400-R router. The following individual vulnerabilities are reported: An information disclosure vulnerability is reported to affect the router. It is reported that an authentication interface exists on the appliance, but a direct request for a backup configuration file is permitted without requiring authentication. Information that is harvested by exploiting this vulnerability may be used to aid in further attacks that are launched against the target appliance. A remote denial of service vulnerability is reported to affect the Gigafast router. It is reported that when the certain functionality is enabled the affected router, the router will crash when a malformed DNS query is handled. A remote attacker may exploit this vulnerability to deny network services for legitimate users.