Full Disclosure mailing list archives
SSD Advisory – D-Link DSL-6850U Multiple Vulnerabilities
From: Maor Shwartz <maors () beyondsecurity com>
Date: Mon, 1 Jan 2018 12:45:36 +0200
SSD Advisory – D-Link DSL-6850U Multiple Vulnerabilities Full report: https://blogs.securiteam.com/index.php/archives/3588 Twitter: @SecuriTeam_SSD Weibo: SecuriTeam_SSD Vulnerabilities Summary The following advisory describes two (2) vulnerabilities found in D-Link DSL-6850U versions BZ_1.00.01 – BZ_1.00.09. D-Link DSL-6850U is a router “manufactured by D-Link for Bezeq in Israel” The vulnerabilities found are: Default Credentials Remote Command Execution Credit An independent security researcher has reported this vulnerability to Beyond Security’s SecuriTeam Secure Disclosure program. Vendor response Bezeq was informed of the vulnerability on June 9, and released patches to address these vulnerabilities. Vulnerabilities details The device has a custom firmware with the following issues: The Remote Web Management is enabled by default The default account cannot be disabled Default Credentials The default account username is: support The password is: support Remote Command Execution The shell interface allows only a set of commands however you can “bind” them using ‘&&’ ‘||’ Sending the command to the shell: === echo && /bin/bash === Will result in a BusyBox shell -- Thanks Maor Shwartz Beyond Security GPG Key ID: 6D273779F52A9FC2 _______________________________________________ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/
Current thread:
- SSD Advisory – D-Link DSL-6850U Multiple Vulnerabilities Maor Shwartz (Jan 01)
