CVE-2008-1244 describes an authentication bypass vulnerability in the Belkin F5D7230-4 router (firmware 9.01.10) and F5D7632-4V6 (firmware 6.01.08). This flaw allows unauthenticated remote attackers to perform administrative actions, specifically changing DNS server settings. The vulnerability carries a critical CVSS score of 10.0, indicating a severe risk due to its network-based attack vector, low attack complexity, and complete compromise of confidentiality, integrity, and availability. Its FAUCET Risk Score is 96/100. While not listed in CISA's KEV catalog, an ExploitDB entry (EDB-6305) confirms the existence of public exploit code. Community discussion and media coverage, including reports of attackers using exploit kits to hijack routers, suggest this vulnerability has received significant attention and has likely been exploited in the past.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:belkin:f5d7230-4:*:*:9.01.10:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.