CVE-2017-20222 is an unauthenticated remote reboot vulnerability affecting Telesquare SKT LTE Router SDT-CS3B1 software version 1.2.0. Attackers can trigger a denial of service by forcing the router to restart through a specific POST request to the lte.cgi endpoint without requiring authentication. This vulnerability carries a CVSS v3.1 score of 7.5 (HIGH), indicating it is remotely exploitable with low attack complexity. While not listed in CISA's Known Exploited Vulnerabilities catalog, community discussions suggest the existence of exploit code, with one mention referencing Packetstorm.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.2.0CPE matchmatch criteria | cpe:2.3:o:telesquare:sdt-cs3b1_firmware:1.2.0:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.