CyberRota Analysis
AI-GeneratedFatPipe MPVPN, WARP, and IPVPN appliances with the end-of-life firmware version 10.1.2r60p100 are vulnerable to a stack-based buffer overflow in the authentication process, allowing unauthenticated remote attackers to execute arbitrary code as root if they can access the management interface. Although this interface is disabled by default, organizations that have enabled it should prioritize patching to mitigate the risk of exploitation. Customers using this outdated firmware are strongly advised to upgrade to a supported version and restrict management access to trusted networks.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
FatPipe MPVPN, WARP, and IPVPN appliances running the end-of-life firmware version 10.1.2r60p100 contain a stack-based buffer overflow in /usr/sbin/auth_user_pass. An unauthenticated remote attacker with access to the affected management interface can submit a crafted authentication request that reaches an unchecked copy into a fixed-size stack buffer, potentially allowing arbitrary code execution as root. The affected management interface is disabled by default and must be affirmatively enabled by the customer before the endpoint becomes reachable. FatPipe recommends restricting management access to trusted administrative networks and using WAN access control lists to limit access to trusted sources. Customers running the affected end-of-life firmware can contact FatPipe Support for help confirming their firmware version and upgrading to a current supported release at https://www.fatpipeinc.com/support/support, support@fatpipeinc.com, or +1 800-724-8521 (option 3).