|
======================================= 2WIRE REMOTE DENIAL OF SERVICE
=======================================
Device: 2wire Gateway Router/Modem
Vulnerable Software: =< 5.29.52
Vulnerable Models: 1700HG
1701HG
1800HW
2071
2700HG
2701HG-T
Release Date: 2009-10-29
Last Update: 2009-09
Critical: Moderately critical
Impact: Denial of service
Remote router reboot
Where: From remote
In the remote management interface
Solution Status: Vendor issued firmware patches
Providers are in charge of applying the patches
WebVuln Advisory: 1-003
BACKGROUND
======================
The remote management interface of some 2wire modems is enabled by
default.
This interface runs over SSL on port 50001 with an untrusted issuer
certificate.
++Espa=C3=B1ol
Algunos m=C3=B3dems 2wire tienen la interfaz remota habilitada por default.
La interfaz utiliza SSL con un certificado invalido en el puerto 50001.
DESCRIPTION
======================
Some 2wire modems are vulnerable to a remote denial of service attack.
By requesting a special url from the Remote Management interface, an
unathenticated
user can remotely reboot the complete device.
++
Algunos m=C3=B3dems 2wire son vulnerables a un ataque de denegaci=C3=B3n de
servicio.
Un usuario no autenticado puede reiniciar el dispositivo enviando una
petici=C3=B3n a
la interfaz de Administraci=C3=B3n remota.
EXPLOIT / POC
======================
https://