Linksys MX4300 Security Issue with DD-WRT v3.0-r60284

Post new topic   Reply to topic    DD-WRT Forum Index -> Qualcomm Atheros based Hardware
Author Message
TomA777
DD-WRT Novice


Joined: 11 Sep 2024
Posts: 9

PostPosted: Thu Mar 13, 2025 17:10    Post subject: Linksys MX4300 Security Issue with DD-WRT v3.0-r60284 Reply with quote
I set up my Linksys MX4300 Mesh with Firmware: DD-WRT v3.0-r60284 std (03/13/25). (EDIT: Screen shot shows the older firmware, but I've upgraded to the latest.)

Everything was working well, and I plan to share my settings soon. However, I’ve encountered a potential security issue.

To resolve connection issues with some of my Apple devices on 5GHz, I split the SSIDs—naming the 2.4GHz network “1WiFi” and the 5GHz network “2WiFi.”

Issue:
Despite enabling security settings on both bands (as shown in my screenshot), the 5GHz network appears as an open network. I can connect to it without a password and access both the router and the internet.

I've used different passwords for each SSID and "forgot" the old settings and rebooted the routers.

Additionally, the router interface reports the WAN as “Disabled,” yet it is clearly functional—I am posting this while connected via the supposedly disabled WAN. 😄

This issue occurs on all three of my MX4300 units, so it doesn’t seem to be a hardware problem.

Is anyone else experiencing this? Any insights would be appreciated.


Last edited by TomA777 on Thu Mar 13, 2025 17:23; edited 2 times in total
Sponsor
kernel-panic69
DD-WRT Guru


Joined: 08 May 2018
Posts: 15918
Location: Texas, USA

PostPosted: Thu Mar 13, 2025 17:19    Post subject: Reply with quote
If it's not an issue on the current release, there is nothing to fix. Serial and/or system logs generally also required for bug reports.

https://download1.dd-wrt.com/dd-wrtv2/downloads/betas/2025/03-13-2025-r60276/

_________________
"Life is but a fleeting moment, a vapor that vanishes quickly; All is vanity"
Contribute To DD-WRT
Pogo - A minimal level of ability is expected and needed...
RSS feed for DD-WRT releases (2025)
RSS feed for DD-WRT releases (2024)
RSS feed for DD-WRT releases (2023)

----------------------
Linux User #377467 counter.li.org / linuxcounter.net
TomA777
DD-WRT Novice


Joined: 11 Sep 2024
Posts: 9

PostPosted: Thu Mar 13, 2025 17:22    Post subject: Reply with quote
I just upgraded to Firmware: DD-WRT v3.0-r60284 std (03/13/25)

The issue remains. I updated my post with this info.
kernel-panic69
DD-WRT Guru


Joined: 08 May 2018
Posts: 15918
Location: Texas, USA

PostPosted: Thu Mar 13, 2025 17:28    Post subject: Reply with quote
60284 isn't even public, but no matter. Logs requested x2. Developer has been contacted.
_________________
"Life is but a fleeting moment, a vapor that vanishes quickly; All is vanity"
Contribute To DD-WRT
Pogo - A minimal level of ability is expected and needed...
RSS feed for DD-WRT releases (2025)
RSS feed for DD-WRT releases (2024)
RSS feed for DD-WRT releases (2023)

----------------------
Linux User #377467 counter.li.org / linuxcounter.net
TomA777
DD-WRT Novice


Joined: 11 Sep 2024
Posts: 9

PostPosted: Thu Mar 13, 2025 17:38    Post subject: Reply with quote
I may be wrong, but think the beta series firmware are the only series that is working with MESH on the MX4300's though.

Sure, happy to provide logs.

How and where should I provide them?
kernel-panic69
DD-WRT Guru


Joined: 08 May 2018
Posts: 15918
Location: Texas, USA

PostPosted: Thu Mar 13, 2025 18:40    Post subject: Reply with quote
In a text file, attached to a post in this thread.
Quote:
Important:
Detail issues & relevant configs, logs: syslog klog 'dmesg' 'cat /tmp/var/log/messages' nvram set console_debug=1, serial.
• Firewall NAT: 'iptables -vnL' 'iptables -t nat -vnL' 'iptables -t mangle -vnL' & 'cat /tmp/.ipt'. Debug Analyze: strace tcpdump.
• Gremlins: reboot. cold boot. Reset & reconfigure not restore backup. Search Trac & discuss in forum before opening tickets.
• Include operating & wireless modes (e.g. Gateway, Router, AP, SB, WDS, Mesh) and applicable configurations to reproduce.

_________________
"Life is but a fleeting moment, a vapor that vanishes quickly; All is vanity"
Contribute To DD-WRT
Pogo - A minimal level of ability is expected and needed...
RSS feed for DD-WRT releases (2025)
RSS feed for DD-WRT releases (2024)
RSS feed for DD-WRT releases (2023)

----------------------
Linux User #377467 counter.li.org / linuxcounter.net
BrainSlayer
Site Admin


Joined: 06 Jun 2006
Posts: 7675
Location: Dresden, Germany

PostPosted: Fri Mar 14, 2025 5:21    Post subject: Reply with quote
looks like a apple bug. the network is secured. for your wan. "its disabled". that doesnt mean the port is disabled its part of the lan bridge then. but the wan port isnt acting as wan device. wan is disabled by default btw. watch the setup page (on the very left) you will clearly find out that its configured to be disabled.

about the so called security issue. maybe the user here did just press save but not apply. so he made a new configuration but forgot that the router will just reconfigure the interface after he pressed apply. save really just means save and apply really means "apply". apply does also save btw. but unlike save it really takes the setting

_________________
"So you tried to use the computer and it started smoking? Sounds like a Mac to me.." - Louis Rossmann https://www.youtube.com/watch?v=eL_5YDRWqGE&t=60s
Display posts from previous:    Page 1 of 1
Post new topic   Reply to topic    DD-WRT Forum Index -> Qualcomm Atheros based Hardware All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum