Neostrada Livebox ADSL Router HTTP Request Denial of Service Vulnerability
BID:32696
Info
Neostrada Livebox ADSL Router HTTP Request Denial of Service Vulnerability
| Bugtraq ID: | 32696 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 08 2008 12:00AM |
| Updated: | Dec 11 2008 06:31PM |
| Credit: | 0in |
| Vulnerable: |
Telekomunikacja Polska (TP) Neostrada Livebox ADSL Router 0 |
| Not Vulnerable: | |
Discussion
Neostrada Livebox ADSL Router HTTP Request Denial of Service Vulnerability
Neostrada Livebox ADSL Router is prone to a denial-of-service vulnerability because it fails to adequately handle malformed HTTP requests.
Successful exploits will deny service to legitimate users. Given the nature of this issue, remote code execution may be possible, but this has not been confirmed.
Neostrada Livebox ADSL Router is prone to a denial-of-service vulnerability because it fails to adequately handle malformed HTTP requests.
Successful exploits will deny service to legitimate users. Given the nature of this issue, remote code execution may be possible, but this has not been confirmed.
Exploit / POC
Neostrada Livebox ADSL Router HTTP Request Denial of Service Vulnerability
Attackers can exploit this issue using a browser.
The following exploit code is available:
Attackers can exploit this issue using a browser.
The following exploit code is available:
Solution / Fix
Neostrada Livebox ADSL Router HTTP Request Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Neostrada Livebox ADSL Router HTTP Request Denial of Service Vulnerability
References:
References:
- TP Homepage (Telekomunikacja Polska)
- Neostrada Livebox Remote Network Down PoC Exploit ([email protected])