GL.iNet.gl-ngx-session.Authentication.Bypass

description-logoDescription

This indicates an attack attempt to exploit an Authentication Bypass vulnerability in GL.iNet routers.
The vulnerability is due to a lack of validation of user supplied inputs in the application. A remote attacker may be able to exploit this to bypass security checks on vulnerable systems.

affected-products-logoAffected Products

GL.iNet GL-MT3000 version 4.3.7
GL.iNet GL-AR300M version 4.3.7
GL.iNet GL-B1300 version 4.3.7
GL.iNet GL-AX1800 version 4.3.7
GL.iNet GL-AR750S version 4.3.7
GL.iNet GL-MT2500 version 4.3.7
GL.iNet GL-AXT1800 version 4.3.7
GL.iNet GL-X3000 version 4.3.7
GL.iNet GL-SFT1200 version 4.3.7

Impact logoImpact

Security Bypass: Remote attackers can bypass security features of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://www.gl-inet.com/

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2024-04-23 27.773 Default_action:pass:drop
2024-04-10 27.764