Improper check or handling of exceptional conditions vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enable an unauthenticated remote attacker to cause a denial of service. A specially-crafted HTTP request to pre-authentication resources can crash the service.
The vulnerability results from improper handling of exceptional conditions (CWE-703) in the pre-authentication layer of the device's HTTP service. An attacker sends a specially crafted HTTP request directed at resources available before authentication, which causes the service to crash. Since the exploit does not require any credentials, network access to the device is sufficient.
An attacker can remotely and without authentication cause a service failure (crash) on the device, resulting in network availability disruption. In industrial environments, this may mean complete disconnection of network communication handled by the bridge/repeater device.
Apply patches available from the manufacturer according to the references. Additionally, it is recommended to restrict network access to the Vonets device management interface only to trusted hosts and isolate industrial devices in dedicated network segments (VLAN, firewall).
Vonets VAR1200-H, VAR1200-L, and VAR600-H (firmware) — software versions 3.3.23.6.9 and earlier
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XVonets Vap11ac
HWVonetsall versionsVonets Vap11ac Firmware
OSVonets≤ 3.3.23.6.9Vonets Vap11g
HWVonetsall versionsVonets Vap11g 300
HWVonetsall versionsVonets Vap11g 300 Firmware
OSVonets≤ 3.3.23.6.9Vonets Vap11g 500
HWVonetsall versionsVonets Vap11g 500 Firmware
OSVonets≤ 3.3.23.6.9Vonets Vap11g 500s
HWVonetsall versionsVonets Vap11g 500s Firmware
OSVonets≤ 3.3.23.6.9Vonets Vap11g Firmware
OSVonets≤ 3.3.23.6.9Vonets Vap11n 300
HWVonetsall versionsVonets Vap11n 300 Firmware
OSVonets≤ 3.3.23.6.9Vonets Vap11s
HWVonetsall versionsVonets Vap11s 5g
HWVonetsall versionsVonets Vap11s 5g Firmware
OSVonets≤ 3.3.23.6.9Vonets Vap11s Firmware
OSVonets≤ 3.3.23.6.9Vonets Var11n 300
HWVonetsall versionsVonets Var11n 300 Firmware
OSVonets≤ 3.3.23.6.9Vonets Var1200 H
HWVonetsall versionsVonets Var1200 H Firmware
OSVonets≤ 3.3.23.6.9Vonets Var1200 L
HWVonetsall versionsVonets Var1200 L Firmware
OSVonets≤ 3.3.23.6.9Vonets Var600 H
HWVonetsall versionsVonets Var600 H Firmware
OSVonets≤ 3.3.23.6.9Vonets Vbg1200
HWVonetsall versionsVonets Vbg1200 Firmware
OSVonets≤ 3.3.23.6.9Vonets Vga 1000
HWVonetsall versionsVonets Vga 1000 Firmware
OSVonets≤ 3.3.23.6.9
Related vulnerabilities
Stack-based buffer overflow RCE w urządzeniach Vonets WiFi Bridge
Command Injection w urządzeniach Vonets WiFi Bridge — zdalne wykonanie komend
VONETS VAP11G-300 v3.3.23.6.9 was discovered to contain a command injection vulnerability via the SystemComman...
VONETS VAP11G-300 v3.3.23.6.9 was discovered to contain hardcoded credentials for several different privileged...
VONETS VAP11G-300 v3.3.23.6.9 was discovered to contain a command injection vulnerability via the iptablesWebs...