|
COMMAND Lucent Access Point IP Services Router remote crash via web interface login SYSTEMS AFFECTED Lucent Access Point IP Services Router (Formerly known as Xedia Router) PROBLEM In FX [fx@phenoelit.de] and kim0 [kim0@phenoelit.de] of Phenoelit Group [http://www.phenoelit.de] advisroy [http://www.phenoelit.de/stuff/Lucent_Xedia.txt] : The Lucent Access Point Router is a mid-range Access Level Router that supports a wide range of cool features such as CBQ (QoS stuff). The Lucent Access Point has a web server providing a colorful interface to use for configuration. This interface is apparently for those people who don't like the extremley powerful command-line. When sending an HTTP GET request with approximately 4000 characters in the URI to the server, the Access Point reboots. [ Example ] linux# wget `perl -e 'print "http://router_ip/"; print "A"x4000; print "/";` router# [b00m] SOLUTION None yet