BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
BT Home Flub: Pwnin the BT Home Hub (5) - exploiting IGDs remotely via UPnP Jan 10 2008 12:20PM
Adrian P (unknown pentester gmail com)
http://www.gnucitizen.org/blog/bt-home-flub-pwnin-the-bt-home-hub-5

It's known that UPnP [1] is inherently insecure for a very simple
reason: administrative tasks can be performed on a Internet Gateway
Device (IGD) without needing to know the admin password whatsoever!
This on its own is quite scar...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus