Full Disclosure mailing list archives

(0-day) Linksys SPA-921 VoIP Desktop Phone HTTP Server DoS


From: shawnmer () io com
Date: Wed, 4 Oct 2006 19:13:25 -0500 (CDT)

Title:  Linksys SPA-921 VoIP Desktop Phone HTTP Server DoS

Version:  1.0.0

Issues:

1.A long URL request to the phone's HTTP server will cause the phone to
reboot.
2.A long username or password in the HTTP basic auth field will cause the
phone to reboot.

Credit:
Shawn Merdinger, Independent Security Researcher

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: