ID

VAR-200803-0167


CVE

CVE-2008-1244


TITLE

Belkin F5D7230-4 On the router cgi-bin/setup_dns.exe Vulnerable to management operations

Trust: 0.8

sources: JVNDB: JVNDB-2008-002822

DESCRIPTION

cgi-bin/setup_dns.exe on the Belkin F5D7230-4 router with firmware 9.01.10 does not require authentication, which allows remote attackers to perform administrative actions, as demonstrated by changing a DNS server via the dns1_1, dns1_2, dns1_3, and dns1_4 parameters. NOTE: it was later reported that F5D7632-4V6 with firmware 6.01.08 is also affected. Belkin F5D7230-4 On the router cgi-bin/setup_dns.exe Is vulnerable to performing administrative operations because it does not require authentication.A third party may perform management operations. The Belkin F5D7230-4 Wireless G Router is prone to a vulnerability because of a lack of authentication when users access 'cgi-bin/setup_dns.exe'. Attackers can exploit this issue to perform administrative functions without authorization. Belkin Wireless G Router is a home wireless router produced by Belkin Corporation of the United States. ---------------------------------------------------------------------- A new version (0.9.0.0 - Release Candidate 1) of the free Secunia PSI has been released. The new version includes many new and advanced features, which makes it even easier to stay patched. Download and test it today: https://psi.secunia.com/ Read more about this new version: https://psi.secunia.com/?page=changelog ---------------------------------------------------------------------- TITLE: Belkin Wireless G Router Security Bypass and Denial of Service SECUNIA ADVISORY ID: SA29345 VERIFY ADVISORY: http://secunia.com/advisories/29345/ CRITICAL: Less critical IMPACT: Security Bypass, DoS WHERE: >From local network OPERATING SYSTEM: Belkin Wireless G Router http://secunia.com/product/6130/ DESCRIPTION: Some security issues and a vulnerability have been reported in the Belkin Wireless G Router, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service). 1) An error in the implementation of authenticated sessions can be exploited to gain access to the router's control panel by establishing a session from a previously authenticated IP address. 2) An error exists within the enforcing of permissions in cgi-bin/setup_dns.exe. 3) An error exists in the cgi-bin/setup_virtualserver.exe script when processing HTTP POST data. This can be exploited to deny further administrative access to an affected device via specially a crafted HTTP POST request with a "Connection: Keep-Alive" header. The security issues and the vulnerability are reported in model F5D7230-4, firmware version 9.01.10. SOLUTION: Restrict network access to the router's web interface. PROVIDED AND/OR DISCOVERED BY: loftgaia ORIGINAL ADVISORY: http://www.gnucitizen.org/projects/router-hacking-challenge/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------

Trust: 2.16

sources: NVD: CVE-2008-1244 // JVNDB: JVNDB-2008-002822 // BID: 28319 // VULHUB: VHN-31369 // PACKETSTORM: 69581 // PACKETSTORM: 64737

AFFECTED PRODUCTS

vendor:belkinmodel:f5d7230-4scope:eqversion:*

Trust: 1.0

vendor:belkinmodel:f5d7230-4scope:eqversion:firmware 9.01.10

Trust: 0.8

vendor:belkinmodel:f5d7230-4scope:eqversion:9.01.10

Trust: 0.6

vendor:belkinmodel:f5d8233-4v3scope:eqversion:0

Trust: 0.3

vendor:belkinmodel:f5d7632-4v6 wireless g routerscope:eqversion:6.1.8

Trust: 0.3

vendor:belkinmodel:f5d7230-4 wireless g routerscope:eqversion:9.1.10

Trust: 0.3

sources: BID: 28319 // JVNDB: JVNDB-2008-002822 // CNNVD: CNNVD-200803-122 // NVD: CVE-2008-1244

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2008-1244
value: HIGH

Trust: 1.0

NVD: CVE-2008-1244
value: HIGH

Trust: 0.8

CNNVD: CNNVD-200803-122
value: CRITICAL

Trust: 0.6

VULHUB: VHN-31369
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2008-1244
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-31369
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-31369 // JVNDB: JVNDB-2008-002822 // CNNVD: CNNVD-200803-122 // NVD: CVE-2008-1244

PROBLEMTYPE DATA

problemtype:CWE-287

Trust: 1.9

sources: VULHUB: VHN-31369 // JVNDB: JVNDB-2008-002822 // NVD: CVE-2008-1244

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200803-122

TYPE

authorization issue

Trust: 0.6

sources: CNNVD: CNNVD-200803-122

CONFIGURATIONS

sources: JVNDB: JVNDB-2008-002822

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-31369

PATCH

title:Top Pageurl:http://www.belkin.com/

Trust: 0.8

sources: JVNDB: JVNDB-2008-002822

EXTERNAL IDS

db:NVDid:CVE-2008-1244

Trust: 2.8

db:BIDid:28319

Trust: 2.0

db:SECUNIAid:29345

Trust: 1.8

db:JVNDBid:JVNDB-2008-002822

Trust: 0.8

db:CNNVDid:CNNVD-200803-122

Trust: 0.7

db:XFid:5

Trust: 0.6

db:XFid:41124

Trust: 0.6

db:BUGTRAQid:20080301 THE ROUTER HACKING CHALLENGE IS OVER!

Trust: 0.6

db:EXPLOIT-DBid:6305

Trust: 0.2

db:SECUNIAid:31665

Trust: 0.2

db:VULHUBid:VHN-31369

Trust: 0.1

db:PACKETSTORMid:69581

Trust: 0.1

db:PACKETSTORMid:64737

Trust: 0.1

sources: VULHUB: VHN-31369 // BID: 28319 // JVNDB: JVNDB-2008-002822 // PACKETSTORM: 69581 // PACKETSTORM: 64737 // CNNVD: CNNVD-200803-122 // NVD: CVE-2008-1244

REFERENCES

url:http://www.gnucitizen.org/projects/router-hacking-challenge/

Trust: 1.8

url:http://www.securityfocus.com/bid/28319

Trust: 1.7

url:https://bugzilla.mozilla.org/show_bug.cgi?id=371598

Trust: 1.7

url:http://secunia.com/advisories/29345

Trust: 1.7

url:http://www.securityfocus.com/archive/1/489009/100/0/threaded

Trust: 1.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/41124

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2008-1244

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2008-1244

Trust: 0.8

url:http://www.securityfocus.com/archive/1/archive/1/489009/100/0/threaded

Trust: 0.6

url:http://xforce.iss.net/xforce/xfdb/41124

Trust: 0.6

url:http://www.belkin.com/index.asp

Trust: 0.3

url:http://catalog.belkin.com/iwcatproductpage.process?merchant_id=&section_id=201522&pcount=&product_id=136493

Trust: 0.3

url:http://www.sourcesec.com/lab/soho_router_report.pdf

Trust: 0.3

url:/archive/1/489009

Trust: 0.3

url:http://secunia.com/product/6130/

Trust: 0.2

url:http://secunia.com/secunia_security_advisories/

Trust: 0.2

url:http://secunia.com/advisories/29345/

Trust: 0.2

url:http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org

Trust: 0.2

url:http://secunia.com/about_secunia_advisories/

Trust: 0.2

url:http://secunia.com/advisories/31665/

Trust: 0.1

url:http://milw0rm.com/exploits/6305

Trust: 0.1

url:http://secunia.com/hardcore_disassembler_and_reverse_engineer/

Trust: 0.1

url:http://secunia.com/secunia_security_specialist/

Trust: 0.1

url:https://psi.secunia.com/?page=changelog

Trust: 0.1

url:https://psi.secunia.com/

Trust: 0.1

sources: VULHUB: VHN-31369 // BID: 28319 // JVNDB: JVNDB-2008-002822 // PACKETSTORM: 69581 // PACKETSTORM: 64737 // CNNVD: CNNVD-200803-122 // NVD: CVE-2008-1244

CREDITS

pdp pdp.gnucitizen@googlemail.com

Trust: 0.6

sources: CNNVD: CNNVD-200803-122

SOURCES

db:VULHUBid:VHN-31369
db:BIDid:28319
db:JVNDBid:JVNDB-2008-002822
db:PACKETSTORMid:69581
db:PACKETSTORMid:64737
db:CNNVDid:CNNVD-200803-122
db:NVDid:CVE-2008-1244

LAST UPDATE DATE

2025-04-10T20:57:26.707000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-31369date:2018-10-11T00:00:00
db:BIDid:28319date:2008-11-13T16:14:00
db:JVNDBid:JVNDB-2008-002822date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200803-122date:2008-09-05T00:00:00
db:NVDid:CVE-2008-1244date:2025-04-09T00:30:58.490

SOURCES RELEASE DATE

db:VULHUBid:VHN-31369date:2008-03-10T00:00:00
db:BIDid:28319date:2008-03-01T00:00:00
db:JVNDBid:JVNDB-2008-002822date:2012-06-26T00:00:00
db:PACKETSTORMid:69581date:2008-09-03T19:29:48
db:PACKETSTORMid:64737date:2008-03-20T00:11:50
db:CNNVDid:CNNVD-200803-122date:2008-03-10T00:00:00
db:NVDid:CVE-2008-1244date:2008-03-10T17:44:00