Orbi WiFi 7 RBE973
Reply

Re: firmware vunnerability

fli
Follower
Follower

firmware vunnerability

It's unbelievable that the firmware is so vulnerable:

1. admin web login with clear text password without TLS or SSL

2. The CVE-2018-10822 issue

3. No way to stop SSID broadcasting

 

With this price tag, could you enhence the above?

Message 1 of 6
FURRYe38
Guru

Re: firmware vunnerability


@fli wrote:

It's unbelievable that the firmware is so vulnerable:

1. admin web login with clear text password without TLS or SSL < Most routers don't need any TLS or SSL on the admin log in from a local side. Been like this for a long time now. 

2. The CVE-2018-10822 issue< This issue is in regards to D-Link effected routers. Not NG. 

3. No way to stop SSID broadcasting< Been like this since Orbi AX released. 

 

With this price tag, could you enhence the above?


 

Message 2 of 6
Ragar99
Luminary

Re: firmware vunnerability

I could find a non-broadcasted SSID in about 30 seconds on my cell.  That is not security.

Message 3 of 6
FURRYe38
Guru

Re: firmware vunnerability

You have a screen capture of this? 


@Ragar99 wrote:

I could find a non-broadcasted SSID in about 30 seconds on my cell.  That is not security.


 

Message 4 of 6
Ragar99
Luminary

Re: firmware vunnerability

I think you misunderstood.  I am not saying Obri allows the user to hide the SSID.  I meant in general it is pretty easy to find hidden or unbroadcasted SSIDs.

Message 5 of 6
FURRYe38
Guru

Re: firmware vunnerability

Gottcha. Very true for sure. 

Message 6 of 6
Top Contributors
Discussion stats
  • 5 replies
  • 874 views
  • 1 kudo
  • 3 in conversation
Announcements

Orbi WiFi 7