TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which is based on it, allows remote attackers to obtain the WEP secret and gain administrator privileges by downloading the configuration file (config.img) and other files without authentication.
Link | Tags |
---|---|
http://www.iss.net/security_center/static/10997.php | vdb entry |
http://www.securityfocus.com/archive/1/305344 | exploit mailing list |
http://www.securityfocus.com/archive/1/305391 | exploit mailing list |
http://www.securitytracker.com/id?1005897 | vdb entry |
http://www.securityfocus.com/bid/6533 | vdb entry |