Acrowave AAP-3100AR Router Authentication Bypass

Monday, May 16 2005 @ 10:22 AM EDT

Martin Tornwall has reported a vulnerability in Acrowave AAP-3100AR Router, which can be exploited by malicious people to bypass certain security restrictions.

The vulnerability is caused due to an error in the authentication process. This can be exploited to login without supplying a username and password by pressing CTRL-C.

OPERATING SYSTEM:
Acrowave AAP-3100AR Router

SOLUTION:
Filter access to the telnet interface.

VERIFY ADVISORY:
http://secunia.com/advisories/15343/

Secunia Security Advisories

0 comments



http://community.securityteam.us/article.php/2005051610225031