CVE-2015-7282

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
31/12/2015
Last modified:
12/04/2025

Description

ReadyNet WRT300N-DD devices with firmware 1.0.26 use the same source port number for every DNS query, which makes it easier for remote attackers to spoof responses by selecting that number for the destination port.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:readynet_solutions:wrt300n-dd_firmware:1.0.26:*:*:*:*:*:*:*
cpe:2.3:h:readynet_solutions:wrt300n-dd:-:*:*:*:*:*:*:*