Telindus ADSL Router Encryption Scheme Weakness
BID:6919
Info
Telindus ADSL Router Encryption Scheme Weakness
| Bugtraq ID: | 6919 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 23 2003 12:00AM |
| Updated: | Feb 23 2003 12:00AM |
| Credit: | The discovery of this vulnerability has been credited to <[email protected]>. |
| Vulnerable: |
Telindus 1120 ADSL Router 6.0 .21B Firmware |
| Not Vulnerable: | |
Discussion
Telindus ADSL Router Encryption Scheme Weakness
A weakness has been discovered in the encryption algorithm used by Telindus ADSL routers. Due to the use of a weak algorithm, as well as various static values within an encrypted packet, it may be possible for a remote attacker to decipher sensitive router information.
By sniffing sensitive network traffic sent by the router, it may be possible for an attacker to deduce the administrator password.
It should be noted that this issue is partially derived from the vulnerability described in BID 4946.
A weakness has been discovered in the encryption algorithm used by Telindus ADSL routers. Due to the use of a weak algorithm, as well as various static values within an encrypted packet, it may be possible for a remote attacker to decipher sensitive router information.
By sniffing sensitive network traffic sent by the router, it may be possible for an attacker to deduce the administrator password.
It should be noted that this issue is partially derived from the vulnerability described in BID 4946.
Exploit / POC
Telindus ADSL Router Encryption Scheme Weakness
No exploit is required.
A sniffer application called TSniffer has been developed to exploit this issue by Arescom. TSniffer can be obtained from the following location:
http://net.supereva.it/noobsaibot.superdada/tsniffer/tslib.zip_
No exploit is required.
A sniffer application called TSniffer has been developed to exploit this issue by Arescom. TSniffer can be obtained from the following location:
http://net.supereva.it/noobsaibot.superdada/tsniffer/tslib.zip_
Solution / Fix
Telindus ADSL Router Encryption Scheme Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Telindus ADSL Router Encryption Scheme Weakness
References:
References: