The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due to reliance on client IP addresses for authentication. Attackers could spoof an IP address to gain unauthorized access without needing a session token.
The router's web application bases its authentication mechanism on the client's IP address instead of a secure session token (CWE-291 — reliance on IP address for authentication). An attacker can perform an IP spoofing attack by impersonating a trusted address that the application will recognize as authenticated. Since identity verification does not require possession of a valid session token, a forged IP address is sufficient to gain full access to the management interface.
An attacker can gain unauthorized access to the router's management interface, which may lead to complete device takeover, modification of its configuration, interception of network traffic, and violation of confidentiality, integrity, and availability of data on the network.
Patches available from the manufacturer should be applied in accordance with the references. As a temporary measure, it is recommended to restrict access to the router's web interface only to trusted hosts and to segment the management network.
LevelOne WBR-6012 with firmware R0.40e6
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:HLevel1 Wbr 6012
HWLevel1all versionsLevel1 Wbr 6012 Firmware
OSLevel1r0.40e6
Related vulnerabilities
LevelOne WBR-6012: zmiana hasła admina bez uwierzytelnienia
A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain ...
A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain ...
A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of the LevelOne ...
The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability within its FTP fu...