29th Jul 2002 [SBWID-5569]
COMMAND
Brother printer remote crash via web login interface
SYSTEMS AFFECTED
Brother Corporation NC-3100h
PROBLEM
In FX [fx@phenoelit.de], FtR [ftr@phenoelit.de],
DasIch [DasIch@phenoelit.de] and kim0 [kim0@phenoelit.de] of Phenoelit
Group [http://www.phenoelit.de] advisroy
[http://www.phenoelit.de/stuff/Brother_NC.txt] :
The Brother NC-3100h provides network connectivity for Brother printers
(much in the same way as the HP JetDirect card).
By sending an oversized administrative password using the
web-interface, an attacker can cause the printer to crash.
Enter a password for the administrator that is 136 characters or more
and <click> the button. The printer will crash.
SOLUTION
None yet
TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2025 AOH