Entradas con la etiqueta ‘speedstream’

Siemens SpeedStream 2624 Denial of Service Vulnerability

CVE Reference:  CVE-2006-3907   (Links to External Site)
Updated:  Jun 13 2008
Original Entry Date:  Jul 26 2006
Impact:  Denial of service via network
Version(s): Model 2624; possibly others
Description:  A vulnerability was reported in SpeedStream. A remote user can cause denial of service conditions.

A remote user can send a specially crafted packet to the administrative web server to cause the target router to freeze. A reboot is necessary to return to normal operations.

The vendor was notified on May 4, 2006.

Jaime Blasco discovered this vulnerability.

The original advisory is available at:

http://www.digitalarmaments.com/2006310665340982.html

Impact:  A remote user can cause the target device to freeze.
Solution:  No solution was available at the time of this entry.
Vendor URL:  www.siemens.com/ (Links to External Site)
Cause:  Exception handling error
Reported By:  info@digitalarmaments.com
Message History:   None.

Leer el resto de esta entrada »