vendor:
AC1200
by:
Gregory Smiley
7,5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: AC1200
Affected Version From: Firmware: 1.00.27
Affected Version To: Firmware: 1.00.27
Patch Exists: YES
Related CWE: N/A
CPE: h:belkin:f9k1113_v1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: F9K1113 v1
2016
Belkin Router AC1200, Firmware: 1.00.27 – Authentication Bypass
The Belkin AC1200 is vulnerable to authentication bypass due to it performing client side authentication after you attempt to login after already having failed a login. That webpage, loginpserr.stm contains the md5 hash value of the administrators password. This can be exploited by extracting that hash value, and passing it in the pws field in a post request to login.cgi.
Mitigation:
Ensure that the router is running the latest firmware version and that all security patches are applied.