Cayman 3220-H DSL路由器DoS漏洞

Cayman 3220-H DSL路由器DoS漏洞

漏洞ID 1105840 漏洞类型 输入验证
发布时间 2000-05-17 更新时间 2005-05-02
图片[1]-Cayman 3220-H DSL路由器DoS漏洞-安全小百科CVE编号 CVE-2000-0417
图片[2]-Cayman 3220-H DSL路由器DoS漏洞-安全小百科CNNVD-ID CNNVD-200005-066
漏洞平台 Hardware CVSS评分 5.0
|漏洞来源
https://www.exploit-db.com/exploits/19923
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200005-066
|漏洞详情
Cayman3220-HDS的HTTP管理接口存在漏洞。远程攻击者借助超长用户名或密码可以导致拒绝服务。
|漏洞EXP
source: http://www.securityfocus.com/bid/1219/info

Large usernames or passwords sent to the router's HTTP interface restart the router. Router log will show "restart not in response to admin command"

Open the router interface with your browser.
Username: ......................... (x79 +)
After the router restarts, you can hit refresh on your browser to take it down again. 

A simple script or program could be written to keep the router down indefinately.
|参考资料

来源:BID
名称:1219
链接:http://www.securityfocus.com/bid/1219
来源:BUGTRAQ
名称:20000523Cayman3220HDSLRouterSoftwareUpdateandNewBonusAttack
链接:http://archives.neohapsis.com/archives/bugtraq/2000-05/0280.html
来源:BUGTRAQ
名称:20000505Cayman3220-HDSLRouterDOS
链接:http://archives.neohapsis.com/archives/bugtraq/2000-05/0075.html

相关推荐: PHP-Nuke泄露密码漏洞

PHP-Nuke泄露密码漏洞 漏洞ID 1205797 漏洞类型 未知 发布时间 2001-05-03 更新时间 2001-05-03 CVE编号 CVE-2001-0292 CNNVD-ID CNNVD-200105-059 漏洞平台 N/A CVSS评分 …

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享