Origo ASR-8100 ADSL Router 3.21 has an administration service running on port 254 that does not require a password, which allows remote attackers to cause a denial of service by restoring the factory defaults.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/13463 | vdb entry |
http://www.securityfocus.com/archive/1/341752 | mailing list exploit |
http://securityreason.com/securityalert/3300 | third party advisory exploit |
http://www.securityfocus.com/bid/8855 | vdb entry |