Zero-Day on cnPilot report (AIRASHI Botnet / DDoS)

Hi,

What models are afected? Is the cnMaestro affected too? What are the official reccomendations to check and prevent this?

Explotación de Vulnerabilidad Zero-Day en Routers cnPilot para desplegar el Botnet AIRASHI de DDoS

Please refer to this page for security updates:

1 Like

does the recomendation to update firmare patch this vulnerability? the document is unclear, it seems more like the current only solution is to disable remote access

You’re correct. The recommendation is to disable access to the UI over the Internet.