Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-9583

common.c in infosvr in ASUS WRT firmware 3.0.0.4.376_1071, 3.0.0.376.2524-g0013f52, and other versions, as used in RT-AC66U, RT-N66U, and other routers, does not properly check the MAC address for a request, which allows remote attackers to bypass authentication and execute arbitrary commands via a NET_CMD_ID_MANU_CMD packet to UDP port 9999. NOTE: this issue was incorrectly mapped to CVE-2014-10000, but that ID is invalid due to its use as an example of the 2014 CVE ID syntax change.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.892
EPSS Ranking 99.5%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2014-9583
  • Asus » Rt-Ac66u » Version: N/A
    cpe:2.3:h:asus:rt-ac66u:-
  • Asus » Rt-N66u » Version: N/A
    cpe:2.3:h:asus:rt-n66u:-
  • Asus » Wrt Firmware » Version: 3.0.0.4.376.2524-g0012f52
    cpe:2.3:o:asus:wrt_firmware:3.0.0.4.376.2524-g0012f52
  • Asus » Wrt Firmware » Version: 3.0.0.4.376_1071
    cpe:2.3:o:asus:wrt_firmware:3.0.0.4.376_1071
  • T-Mobile » Tm-Ac1900 » Version: 3.0.0.4.376_3169
    cpe:2.3:o:t-mobile:tm-ac1900:3.0.0.4.376_3169


Contact Us

Shodan ® - All rights reserved