Conexant CX82310-based ADSL router vulnerability

pdos

Active Member
Joined
Aug 5, 2003
Messages
55
Reaction score
0
Location
South Africa.
Routers with the Conexant chip set have a serious vulnerability

See this link
http://www.chiark.greenend.org.uk/~...rity/origo.html

Try this:-
telnet your.asdl.router.address 254

You will be given a password prompt. Just hit Enter and you will get administrative access to the ADSL router.

I have tried it out on my client's 4-port ethernet adsl modem that they obtained from Telkom.

The fix is to do port redirection under Virtual Server Configuration:-
Public port 254
Private port 254
Port type TCP
Host IP Address some.none-existent.ip.address

Do this also for port 255
 
The chipset is not at fault but rather the firmware that controls it.
Some companies do their own firmware but most cheap ones like Marconi probably just ship whatever Conexant gave them.

Hopefully there will be a fix.
 
i thought marconi made the chipset. my billion 7100g uses the marconi chipset (which you state is actually the conexant chipset)?!
 
andres101 said:
i thought marconi made the chipset. my billion 7100g uses the marconi chipset (which you state is actually the conexant chipset)?!

The 7100g uses Connexant ... http://www.solwise.co.uk/adsl-billion-7100.htm

Marconi does not make home ADSL gear ... they just slap their badge on a generic box and charge extra $$$ for it ... afaik the modems comes from some Indian company.
 
Top
Sign up to the MyBroadband newsletter
X