SMC Router Backup Tool Plaintext Password Weakness
BID:7059
Info
SMC Router Backup Tool Plaintext Password Weakness
| Bugtraq ID: | 7059 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 10 2003 12:00AM |
| Updated: | Mar 10 2003 12:00AM |
| Credit: | Discovery of this weakness has been credited to "Charles M. Richmond" <[email protected]>. |
| Vulnerable: |
SMC SMC7004VWBR Broadband Router 1.231 firmware SMC SMC7004VWBR Broadband Router 1.23 firmware |
| Not Vulnerable: | |
Discussion
SMC Router Backup Tool Plaintext Password Weakness
It has been reported that SMC router backup tool stores router administration credentials in a backup archive using plaintext format.
This weakness may result in unauthorized users disclosing sensitive router configuration information from the router backup file.
This vulnerability has been reported to affect SMC SMC7004VWBR devices, however other products may also be affected.
It has been reported that SMC router backup tool stores router administration credentials in a backup archive using plaintext format.
This weakness may result in unauthorized users disclosing sensitive router configuration information from the router backup file.
This vulnerability has been reported to affect SMC SMC7004VWBR devices, however other products may also be affected.
Exploit / POC
SMC Router Backup Tool Plaintext Password Weakness
There is no exploit required.
There is no exploit required.
Solution / Fix
SMC Router Backup Tool Plaintext Password Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.