Mentor ADSL-FR4II Multiple Vulnerabilities
BID:14557
Info
Mentor ADSL-FR4II Multiple Vulnerabilities
| Bugtraq ID: | 14557 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 13 2005 12:00AM |
| Updated: | Aug 13 2005 12:00AM |
| Credit: | Discovery credited to Tim Brown <[email protected]>. |
| Vulnerable: |
Mentor ADSL-FR4II |
| Not Vulnerable: | |
Discussion
Mentor ADSL-FR4II Multiple Vulnerabilities
Mentor ADSL-FR4II is prone to multiple vulnerabilities which could allow unauthorized remote access or result in a denial of service.
Specifically, the backup configuration files downloaded from the device contain the administrator password in clear text.
The device is also prone to a denial of service when a number of connections to various ports on the device are made.
Mentor ADSL-FR4II is prone to multiple vulnerabilities which could allow unauthorized remote access or result in a denial of service.
Specifically, the backup configuration files downloaded from the device contain the administrator password in clear text.
The device is also prone to a denial of service when a number of connections to various ports on the device are made.
Exploit / POC
Mentor ADSL-FR4II Multiple Vulnerabilities
No exploit code is required.
No exploit code is required.
Solution / Fix
Mentor ADSL-FR4II Multiple Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Mentor ADSL-FR4II Multiple Vulnerabilities
References:
References:
- ADSL-FR4II (Mentor)
- Low security hole affecting Mentor's ADSLFR4II router (Tim Brown
)