ID

VAR-200908-0165


CVE

CVE-2008-7115


TITLE

Belkin F5D7632-4V6 Wireless G Router Multiple Authentication Bypass Vulnerabilities

Trust: 0.9

sources: BID: 36406 // CNNVD: CNNVD-200908-457

DESCRIPTION

The web interface to the Belkin Wireless G router and ADSL2 modem F5D7632-4V6 with firmware 6.01.08 allows remote attackers to bypass authentication and gain administrator privileges via a direct request to (1) statusprocess.exe, (2) system_all.exe, or (3) restore.exe in cgi-bin/. NOTE: the setup_dns.exe vector is already covered by CVE-2008-1244. The Belkin F5D7632-4V6 Wireless G Router is prone to multiple vulnerabilities because of a lack of authentication. Attackers can exploit these issues to perform administrative functions without authorization. Belkin F5D7632-4V6 running firmware 6.01.08 is vulnerable; other devices and firmware versions may also be affected. ---------------------------------------------------------------------- A new version (0.9.0.0 - Release Candidate 1) of the free Secunia PSI has been released. The new version includes many new and advanced features, which makes it even easier to stay patched. Download and test it today: https://psi.secunia.com/ Read more about this new version: https://psi.secunia.com/?page=changelog ---------------------------------------------------------------------- TITLE: Belkin Wireless G Router Security Bypass and Denial of Service SECUNIA ADVISORY ID: SA29345 VERIFY ADVISORY: http://secunia.com/advisories/29345/ CRITICAL: Less critical IMPACT: Security Bypass, DoS WHERE: >From local network OPERATING SYSTEM: Belkin Wireless G Router http://secunia.com/product/6130/ DESCRIPTION: Some security issues and a vulnerability have been reported in the Belkin Wireless G Router, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service). 1) An error in the implementation of authenticated sessions can be exploited to gain access to the router's control panel by establishing a session from a previously authenticated IP address. 2) An error exists within the enforcing of permissions in cgi-bin/setup_dns.exe. This can be exploited to perform restricted administrative actions by directly accessing the vulnerable script. 3) An error exists in the cgi-bin/setup_virtualserver.exe script when processing HTTP POST data. This can be exploited to deny further administrative access to an affected device via specially a crafted HTTP POST request with a "Connection: Keep-Alive" header. The security issues and the vulnerability are reported in model F5D7230-4, firmware version 9.01.10. SOLUTION: Restrict network access to the router's web interface. PROVIDED AND/OR DISCOVERED BY: loftgaia ORIGINAL ADVISORY: http://www.gnucitizen.org/projects/router-hacking-challenge/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------

Trust: 2.16

sources: NVD: CVE-2008-7115 // JVNDB: JVNDB-2009-003124 // BID: 36406 // VULHUB: VHN-37240 // PACKETSTORM: 69581 // PACKETSTORM: 64737

AFFECTED PRODUCTS

vendor:belkinmodel:f5d7632-4scope:eqversion:6.01.08

Trust: 1.6

vendor:belkinmodel:wireless g routerscope: - version: -

Trust: 1.4

vendor:belkinmodel:wireless g routerscope:eqversion:*

Trust: 1.0

vendor:belkinmodel:f5d7632-4scope:eqversion:v6 firmware 6.01.08

Trust: 0.8

vendor:belkinmodel:f5d7632-4v6 wireless g routerscope:eqversion:6.1.8

Trust: 0.3

sources: BID: 36406 // JVNDB: JVNDB-2009-003124 // CNNVD: CNNVD-200908-457 // NVD: CVE-2008-7115

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2008-7115
value: HIGH

Trust: 1.0

NVD: CVE-2008-7115
value: HIGH

Trust: 0.8

CNNVD: CNNVD-200908-457
value: CRITICAL

Trust: 0.6

VULHUB: VHN-37240
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2008-7115
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-37240
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-37240 // JVNDB: JVNDB-2009-003124 // CNNVD: CNNVD-200908-457 // NVD: CVE-2008-7115

PROBLEMTYPE DATA

problemtype:CWE-264

Trust: 1.9

sources: VULHUB: VHN-37240 // JVNDB: JVNDB-2009-003124 // NVD: CVE-2008-7115

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200908-457

TYPE

permissions and access control

Trust: 0.6

sources: CNNVD: CNNVD-200908-457

CONFIGURATIONS

sources: JVNDB: JVNDB-2009-003124

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-37240

PATCH

title:Top Pageurl:http://www.belkin.com/

Trust: 0.8

sources: JVNDB: JVNDB-2009-003124

EXTERNAL IDS

db:NVDid:CVE-2008-7115

Trust: 2.8

db:SECUNIAid:31665

Trust: 1.9

db:EXPLOIT-DBid:6305

Trust: 1.8

db:SECTRACKid:1020747

Trust: 1.7

db:JVNDBid:JVNDB-2009-003124

Trust: 0.8

db:CNNVDid:CNNVD-200908-457

Trust: 0.7

db:MILW0RMid:6305

Trust: 0.6

db:XFid:44874

Trust: 0.6

db:BIDid:36406

Trust: 0.4

db:VULHUBid:VHN-37240

Trust: 0.1

db:PACKETSTORMid:69581

Trust: 0.1

db:SECUNIAid:29345

Trust: 0.1

db:PACKETSTORMid:64737

Trust: 0.1

sources: VULHUB: VHN-37240 // BID: 36406 // JVNDB: JVNDB-2009-003124 // PACKETSTORM: 69581 // PACKETSTORM: 64737 // CNNVD: CNNVD-200908-457 // NVD: CVE-2008-7115

REFERENCES

url:http://www.securitytracker.com/id?1020747

Trust: 1.7

url:http://secunia.com/advisories/31665

Trust: 1.7

url:https://www.exploit-db.com/exploits/6305

Trust: 1.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/44874

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2008-7115

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2008-7115

Trust: 0.8

url:http://xforce.iss.net/xforce/xfdb/44874

Trust: 0.6

url:http://www.milw0rm.com/exploits/6305

Trust: 0.6

url:http://www.belkin.com/index.asp

Trust: 0.3

url:http://www.sourcesec.com/lab/soho_router_report.pdf

Trust: 0.3

url:http://secunia.com/product/6130/

Trust: 0.2

url:http://secunia.com/secunia_security_advisories/

Trust: 0.2

url:http://secunia.com/advisories/29345/

Trust: 0.2

url:http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org

Trust: 0.2

url:http://secunia.com/about_secunia_advisories/

Trust: 0.2

url:http://secunia.com/advisories/31665/

Trust: 0.1

url:http://milw0rm.com/exploits/6305

Trust: 0.1

url:http://secunia.com/hardcore_disassembler_and_reverse_engineer/

Trust: 0.1

url:http://secunia.com/secunia_security_specialist/

Trust: 0.1

url:https://psi.secunia.com/?page=changelog

Trust: 0.1

url:https://psi.secunia.com/

Trust: 0.1

url:http://www.gnucitizen.org/projects/router-hacking-challenge/

Trust: 0.1

sources: VULHUB: VHN-37240 // BID: 36406 // JVNDB: JVNDB-2009-003124 // PACKETSTORM: 69581 // PACKETSTORM: 64737 // CNNVD: CNNVD-200908-457 // NVD: CVE-2008-7115

CREDITS

noensr

Trust: 0.9

sources: BID: 36406 // CNNVD: CNNVD-200908-457

SOURCES

db:VULHUBid:VHN-37240
db:BIDid:36406
db:JVNDBid:JVNDB-2009-003124
db:PACKETSTORMid:69581
db:PACKETSTORMid:64737
db:CNNVDid:CNNVD-200908-457
db:NVDid:CVE-2008-7115

LAST UPDATE DATE

2025-04-10T19:43:47.307000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-37240date:2017-09-29T00:00:00
db:BIDid:36406date:2009-09-15T23:31:00
db:JVNDBid:JVNDB-2009-003124date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200908-457date:2009-08-28T00:00:00
db:NVDid:CVE-2008-7115date:2025-04-09T00:30:58.490

SOURCES RELEASE DATE

db:VULHUBid:VHN-37240date:2009-08-28T00:00:00
db:BIDid:36406date:2008-08-25T00:00:00
db:JVNDBid:JVNDB-2009-003124date:2012-06-26T00:00:00
db:PACKETSTORMid:69581date:2008-09-03T19:29:48
db:PACKETSTORMid:64737date:2008-03-20T00:11:50
db:CNNVDid:CNNVD-200908-457date:2009-08-28T00:00:00
db:NVDid:CVE-2008-7115date:2009-08-28T15:30:00.437