Dell TrueMobile 2300 - Remote Credential Reset

EDB-ID:

26761

CVE:

N/A


Author:

TNull

Type:

webapps


Platform:

CGI

Date:

2005-12-07


Become a Certified Penetration Tester

Enroll in Penetration Testing with Kali Linux and pass the exam to become an Offensive Security Certified Professional (OSCP). All new content for 2020.

GET CERTIFIED

source: https://www.securityfocus.com/bid/15770/info

It is possible for remote attackers to gain control of a target TrueMobile 2300 running firmware versions 3.0.0.8 and 5.1.1.6. Other versions are likely affected. The vulnerability appears to be in an administrative component accessed through the web-based control interface. Unauthenticated attackers can force the device to reset the administrative credentials without authorization. Once credentials have been reset an attacker can log in and perform malicious actions, potentially compromising the entire LAN behind the device. 

http://target/apply.cgi?Page=adv_password.asp&action=ClearLog

A dialog requesting credentials may appear. The action will be performed, even if "cancel" is clicked.