Unrated severityNVD Advisory· Published May 24, 2006· Updated Apr 16, 2026
CVE-2006-2559
CVE-2006-2559
Description
Linksys WRT54G Wireless-G Broadband Router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.
Affected products
9cpe:2.3:h:linksys:wrt54g:1.42.3:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:h:linksys:wrt54g:1.42.3:*:*:*:*:*:*:*
- cpe:2.3:h:linksys:wrt54g:2.00.8:*:*:*:*:*:*:*
- cpe:2.3:h:linksys:wrt54g:2.02.7:*:*:*:*:*:*:*
- cpe:2.3:h:linksys:wrt54g:2.04.4:*:*:*:*:*:*:*
- cpe:2.3:h:linksys:wrt54g:2.04.4_non_default:*:*:*:*:*:*:*
- cpe:2.3:h:linksys:wrt54g:3.01.3:*:*:*:*:*:*:*
- cpe:2.3:h:linksys:wrt54g:3.03.6:*:*:*:*:*:*:*
- cpe:2.3:h:linksys:wrt54g:4.00.7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- secunia.com/advisories/20161nvdPatchVendor Advisory
- www.securityview.org/dutch-student-finds-a-bug-in-upnp.htmlnvdURL Repurposed
- www.securityview.org/how-does-the-upnp-flaw-works.htmlnvdURL Repurposed
- securitytracker.com/idnvd
- www.vupen.com/english/advisories/2006/1909nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26707nvd
News mentions
0No linked articles in our index yet.