CVE-2011-4500

Severity CVSS v4.0:
Pending analysis
Type:
CWE-16 Configuration Errors
Publication date:
22/11/2011
Last modified:
11/04/2025

Description

The UPnP IGD implementation on the Cisco Linksys WRT54GX with firmware 2.00.05, when UPnP is enabled, configures the SOAP server to listen on the WAN port, which allows remote attackers to administer the firewall via SOAP requests.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:linksys_wrt54gx_router_firmware:2.00.05:*:*:*:*:*:*:*
cpe:2.3:h:linksys:wrt54gx:2.0:*:*:*:*:*:*:*