topbanner_forum
  *

avatar image

Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
  • Saturday December 14, 2024, 5:32 pm
  • Proudly celebrating 15+ years online.
  • Donate now to become a lifetime supporting member of the site and get a non-expiring license key for all of our programs.
  • donate

Author Topic: D-Link routers vulnerable to remote attack  (Read 4592 times)

oBFusC8r

  • Charter Honorary Member
  • Joined in 2005
  • ***
  • default avatar
  • Posts: 24
    • View Profile
    • Donate to Member
D-Link routers vulnerable to remote attack
« on: August 15, 2006, 07:11 AM »

Reports of new vulnerabilities pop up every now and then. An unchecked buffer in a piece of software could easily slip through code reviews and testing. If found and exploited, it could lead to total control over a computer or even network.

According to the following eEye report several D-Link routers can be attacked remotely, leading to total control of the router, and possibility to get into the network it protects.

http://www.eeye.com/...ries/AD20060714.html

Like I said, bugs like these are found every now and then in software and hardware devices (e.g. HP printers), but what is interesting here is that apparently D-Link has not bothered to fix it even though it was reported to them back in February! It tells you a bit how interested they seem to be to fix problems with their products.

Here is some more detailed information:
http://www.blackhat....06/bh-eu-06-Jack.pdf

Funny cat & dog pic on page 25 btw..

Innuendo

  • Charter Member
  • Joined in 2005
  • ***
  • default avatar
  • Posts: 2,266
    • View Profile
    • Donate to Member
Re: D-Link routers vulnerable to remote attack
« Reply #1 on: August 17, 2006, 09:12 PM »
Not all D-Link routers are affected. Some were never affected and some were affected, but have had their firmware patched.  Here's a link to a thread on DSLReports about the problem with replies from a D-Link tech:

http://www.dslreport...orum/remark,16315139