3Com DSL Router Administrative Interface Long Request DoS
24 Feb. 2004
Summary
OfficeConnect is a router widely used in the world. The router can be rebooted due to a flaw in its web administration interface. As no authentication is needed, every LAN user can cause a crash and reboot of the router, stopping internet connection for one or two minutes. A remote user can exploit it if the web interface is available in the WAN interface of the router or if he can persuade a user to click on a link in a forum or to visit a webpage (as you can always access the web interface if the connection is local initiated, as is from the web browser).OfficeConnect is a router widely used in the world. The router can be rebooted due to a flaw in its web administration interface. As no authentication is needed, every LAN user can cause a crash and reboot of the router, stopping internet connection for one or two minutes. A remote user can exploit it if the web interface is available in the WAN interface of the router or if he can persuade a user to click on a li!
Credit:
The information has been provided by Shaun Colley.
Exploit:
/* 3com-DoS.c
*
* PoC DoS exploit for 3Com OfficeConnect DSL Routers.
* discovered by David F. Madrid.
*
* Successful exploitation of the vulnerability should cause the router to
* reboot. It is not believed that arbitrary code execution is possible -
* check advisory for more information.
*
* -shaun2k2
*/