CVE-2011-4500

high Cisco
CVSS v3 Base Score
7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS Score
0.5%
Exploitation probability in 30 days
Top 35% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Confidentiality
P
Integrity
P
Availability
P
Published: November 22, 2011 (5287 days ago)
Last Modified: April 29, 2026
Vendor: Cisco
Source: NVD

Description

The UPnP IGD implementation on the Cisco Linksys WRT54GX with firmware 2.00.05, when UPnP is enabled, configures the SOAP server to listen on the WAN port, which allows remote attackers to administer the firewall via SOAP requests.

CWE

CWE-16

Affected Products

cisco linksys wrt54gx router firmwarelinksys wrt54gx

References