Jump to content

At least 700,000 routers that ISPs gave to their customers are vulnera


atiustira

Recommended Posts

WOW! That's a big hole in that firewall!

 

"The directory traversal vulnerability can be used by unauthenticated attackers to extract a sensitive file called config.xml, which is on most of the affected routers and contains their configuration settings.

The file also contains the password hashes for the administrator and other accounts on the device; the username and password for the user’s ISP connection (PPPoE); the client and server credentials for the TR-069 remote management protocol used by some ISPs; and the password for the configured wireless network, if the device has Wi-Fi capabilities. "

 

http://www.techhive.com/article/2899732/at-least-700000-routers-given-to-customers-by-isps-are-vulnerable-to-hacking.html#tk.nl_thbest

 

A list with some of the equipment that has the firmware by that manufacturer

 

https://wikidevi.com/w/index.php?title=Special:Search&limit=500&offset=0&profile=default&search=Shenzhen+Gongjin+Electronics

  • Like 1
Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...