Red-M 1050AP LAN Access Point IP Based Persistant Authentication Weakness
BID:4940
Info
Red-M 1050AP LAN Access Point IP Based Persistant Authentication Weakness
| Bugtraq ID: | 4940 |
| Class: | Access Validation Error |
| CVE: |
CVE-2002-0396 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 05 2002 12:00AM |
| Updated: | Jul 11 2009 01:56PM |
| Credit: | Published by Ollie Whitehouse <[email protected]>. |
| Vulnerable: |
Red-M 1050AP LAN access point |
| Not Vulnerable: | |
Discussion
Red-M 1050AP LAN Access Point IP Based Persistant Authentication Weakness
The Red-M 1050AP LAN Access Point is a hardware device which provides a LAN access point to Bluetooth devices. The device supports a web based administration interface.
Reportedly, persistant authentication to the web interface is granted based on IP address. If a valid user authenticates, an attacker able to make a request from the same IP address is assumed to be an administrator. This may occur when both parties are behind a proxy server or when NAT is performed.
Under these conditions, the attacker may modify the device configuration, including the administrative password.
The Red-M 1050AP LAN Access Point is a hardware device which provides a LAN access point to Bluetooth devices. The device supports a web based administration interface.
Reportedly, persistant authentication to the web interface is granted based on IP address. If a valid user authenticates, an attacker able to make a request from the same IP address is assumed to be an administrator. This may occur when both parties are behind a proxy server or when NAT is performed.
Under these conditions, the attacker may modify the device configuration, including the administrative password.
Exploit / POC
Red-M 1050AP LAN Access Point IP Based Persistant Authentication Weakness
No exploit is required.
No exploit is required.
Solution / Fix
Red-M 1050AP LAN Access Point IP Based Persistant Authentication Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Red-M 1050AP LAN Access Point IP Based Persistant Authentication Weakness
References:
References:
- Red-M 1050AP access point (Red-M)