Telesquare SKT LTE Router SDT-CS3B1 software version 1.2.0 contains an unauthenticated remote reboot vulnerability that allows attackers to trigger device reboot without authentication. Attackers can send POST requests to the lte.cgi endpoint with the Command=Reboot parameter to cause denial of service by forcing the router to restart.
References
| Link | Resource |
|---|---|
| https://cxsecurity.com/issue/WLB-2017120300 | Exploit Issue Tracking |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/136825 | Third Party Advisory |
| https://packetstormsecurity.com/files/145555 | Exploit Third Party Advisory |
| https://www.exploit-db.com/exploits/43401/ | Exploit Third Party Advisory VDB Entry |
| https://www.vulncheck.com/advisories/telesquare-skt-lte-router-sdt-cs3b1-unauthenticated-remote-reboot | Third Party Advisory |
| https://www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5444.php | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2026-03-16 14:17
Updated : 2026-06-17 01:15
NVD link : CVE-2017-20222
Mitre link : CVE-2017-20222
CVE.ORG link : CVE-2017-20222
JSON object : View
Products Affected
telesquare
- sdt-cs3b1
- sdt-cs3b1_firmware
CWE
CWE-306
Missing Authentication for Critical Function
