Release date:
Updated on:
Affected Systems:
Nisuta NS-WIR150 Wireless Routers 5.07.41
Nisuta NS-WIR300 Wireless Routers 5.07.36 _ NIS01
Description:
--------------------------------------------------------------------------------
Nisuta NS-WIR150/NS-WIR300 are from Spain wireless router products.
NS-WIR150NE 5.07.41, NS-WIR300N 5.07.36 _ NIS01, NS-WIR150NF, NS-WIR300ND does not properly restrict access to remote management Web interfaces, this vulnerability allows remote attackers to bypass authentication through a specially crafted "admin" cookie and then access the previously inaccessible feature.
<* Source: Amplia Security
Link: http://secunia.com/advisories/55617/
Http://www.exploit-db.com/exploits/30665/
Http://osvdb.org/show/osvdb/101727
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Nisuta
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.nisuta.com/
Nisuta NS-WIR150NE
Http://www.nisuta.com/producto.asp? Id = NSWIR150NE
Http://www.nisuta.com/drivers/NSWIR150NE.rar
Nisuta NS-WIR150NF
Http://www.nisuta.com/producto.asp? Id = NSWIR150NF
Http://www.nisuta.com/drivers/NSWIR150NF.rar