|
|
|
|
| |
| The MTPSR1-120 Firewall Proxy configuration software's default do not set a Firewall password and allow access via telnet protocol. As a result, the telnet port will be left exposed to unrestricted remote access. Remote users with malicious intent will be able to access the Firewall to change various configurations, such as IP, PPP/SLIP, WAN, Proxy, DHCP, Virtual Server or reset Firewall. Attackers can set their password, block web server and registered users don't can login for change changes remote. |
| |
Credit:
The information has been provided by UkR-XblP UkR security team.
|
| |
Vulnerable systems:
* MTPSR1-120 Firewall Proxy configuration version 3.0
Solution:
Set a password after setup and disable telnet access.
|
|
|
|
|
|
|
|
|
|