CVE-2008-1321 describes an authentication bypass vulnerability in the FxIAList service of ASG-Sentry Network Manager version 7.0.0 and earlier. An unauthenticated remote attacker can send an "exit" command to TCP port 6162, leading to a denial of service by terminating the service, or potentially achieve other impacts through different commands. Rated with a CVSS score of 5.0 (medium), this vulnerability is easily exploitable over the network with low attack complexity and no authentication required, resulting in a partial impact to availability. Its FAUCET Risk Score is high at 90/100, indicating significant risk. While not actively exploited in the wild (no KEV entry), exploit code is publicly available via ExploitDB (EDB-5229). There is no evidence of Metasploit or Nuclei modules, and community discussion and media coverage are minimal, suggesting low public attention despite the available exploit.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 7.0.0CPE matchmatch criteria | cpe:2.3:a:asg-sentry:asg-sentry:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.