The exploit demonstrates multiple vulnerabilities in WIMAX MT711x modems, including authentication bypass, information leakage, and unauthorized configuration changes via direct CGI endpoint access. It provides functional HTTP requests to exploit these issues, such as retrieving WiFi settings, Wimax credentials, and changing admin passwords.
Classification
Working Poc 90%
Attack Type
Auth Bypass | Info Leak | Other
Target:
WIMAX MT711x (V_3_11_14_9_CPE)
No auth needed
Prerequisites:
Network access to the modem's web interface