Sicherheitshinweis Gigaset Nx70 IP PRO Devices, behoben mit FW Release 2.70.0

tango501

IPPF-Promi
Mitglied seit
1 Aug 2022
Beiträge
6,478
Punkte für Reaktionen
1,566
Punkte
113
Security Advisory CGP-7848-SA - Authenticated Configuration Manipulation Leads to Root Access on Gigaset Nx70 IP PRO Devices

Summary​

An attacker with access to an internal management interface can manipute the device and this may lead to the disclosure of authentication information and the acquisition of root privileges. This issue is fixed by implemented security hardening measures by restricting execution of potentially risky network-enabled tools and disabling communication forwarding for the mangement interface user.

Affected Products​

  • Product Name(s): Gigaset N530 IP PRO, N610 IP PRO, N670 IP PRO, N770 IP PRO, N870 IP PRO, N870E IP PRO, IP Base Comfort II, BasicLine IP
  • Affected Version(s) / Build(s): v2.68.0 and lower

Mitigations / Workarounds​

  • Update the device to v2.70.0 or later
  • Until the update has been carried out, please follow the Recommendations

Recommendation

The CLI / Secure Shell interface is reserved for technical specialists. It is deactivated by default and can be enabled by the Admin user of the system via WebUI or Provisioning.
Limit the CLI access to prevent the access via Secure Shell. The CLI / Secure Shell allowed can be disabled via WebUI or provisioning.

If the CLI / Secure Shell is needed, follow the following rules:

  • For each access CLI should be enabled for a limited time
  • For each access a CLI password different to the password of the system should be set
  • For each access a different CLI password should be used

Solution / Patch Information​

Available Fixes​

 
Kostenlos!

Statistik des Forums

Themen
248,899
Beiträge
2,304,452
Mitglieder
378,595
Neuestes Mitglied
Jogi1977