CVE-2012-1250

Logitec LAN-W300N/R routers with firmware before 2.27 do not properly restrict login access, which allows remote attackers to obtain administrative privileges and modify settings via vectors related to PPPoE authentication.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:logitech:lan-w300n\/r:-:*:*:*:*:*:*:*
cpe:2.3:h:logitech:lan-w300n\/rs:-:*:*:*:*:*:*:*
cpe:2.3:h:logitech:lan-w300n\/ru2:-:*:*:*:*:*:*:*

History

25 Feb 2022, 18:40

Type Values Removed Values Added
CPE cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:1.17:*:*:*:*:*:*:*
References (SECUNIA) http://secunia.com/advisories/49289 - (SECUNIA) http://secunia.com/advisories/49289 - Broken Link
References (JVN) http://jvn.jp/en/jp/JVN85934986/index.html - (JVN) http://jvn.jp/en/jp/JVN85934986/index.html - Third Party Advisory
References (JVNDB) http://jvndb.jvn.jp/jvndb/JVNDB-2012-000051 - (JVNDB) http://jvndb.jvn.jp/jvndb/JVNDB-2012-000051 - Third Party Advisory, VDB Entry
References (BID) http://www.securityfocus.com/bid/53685 - (BID) http://www.securityfocus.com/bid/53685 - Third Party Advisory, VDB Entry

10 Feb 2022, 19:47

Type Values Removed Values Added
First Time Logitech lan-w300n\/ru2
Logitech
Logitech lan-w300n\/ru2 Firmware
Logitech lan-w300n\/r Firmware
Logitech lan-w300n\/r
Logitech lan-w300n\/rs
Logitech lan-w300n\/rs Firmware
CPE cpe:2.3:a:logitec:lan-w300n\/rs_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/ru2_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/r_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/rs_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:logitec:lan-w300n\/r:-:*:*:*:*:*:*:*
cpe:2.3:h:logitec:lan-w300n\/rs:-:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/ru2_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:h:logitec:lan-w300n\/ru2:-:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/ru2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/r_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/r_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/r_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/rs_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/ru2_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitec:lan-w300n\/rs_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/ru2_firmware:2.10a:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/rs_firmware:1.18:*:*:*:*:*:*:*
cpe:2.3:a:logitech:lan-w300n\/r_firmware:1.17:*:*:*:*:*:*:*
cpe:2.3:h:logitech:lan-w300n\/rs:-:*:*:*:*:*:*:*
cpe:2.3:h:logitech:lan-w300n\/ru2:-:*:*:*:*:*:*:*
cpe:2.3:h:logitech:lan-w300n\/r:-:*:*:*:*:*:*:*

Information

Published : 2012-06-04 17:55

Updated : 2023-12-10 11:16


NVD link : CVE-2012-1250

Mitre link : CVE-2012-1250

CVE.ORG link : CVE-2012-1250


JSON object : View

Products Affected

logitech

  • lan-w300n\/r
  • lan-w300n\/rs
  • lan-w300n\/ru2
  • lan-w300n\/ru2_firmware
CWE
CWE-264

Permissions, Privileges, and Access Controls