vendor:
DSL-2650U
by:
Li'el Fridman
5.5
CVSS
MEDIUM
Denial of Service (DoS)
399
CWE
Product Name: DSL-2650U
Affected Version From: 1.2
Affected Version To: 1.2
Patch Exists: NO
Related CWE:
CPE: o:dlink:dsl-2650u_firmware:1.20
Platforms Tested: Linux
2011
Dlink DSL-2650U DoS/PoC
This exploit allows an attacker to perform a Denial of Service attack on the Dlink DSL-2650U router. By sending a specially crafted request to the 'diagpppoe.cgi' script with a long string of characters, the router crashes and becomes unresponsive.
Mitigation:
Upgrade to a patched firmware version or use a different router model.