Search
Search internet.com
News Reviews Insights Tutorials WiMax VoIP HotSpots Forums Events Products Glossary About






Subscribe Now!
Networking Daily Newsletter



More Free Newsletters


Wi-Fi Glossary
Find a Wi-Fi Term

Wi-Fi® is a registered certification mark of the Wi-Fi Alliance




Local Guides


internet.commerce
Be a Commerce Partner
















internet.com
IT
Developer
Internet News
Small Business
Personal Technology

Search internet.com
Advertise
Corporate Info
Newsletters
Tech Jobs
E-mail Offers

>> Wi-Fi Planet Marketplace
Be a Marketplace Partner


80211Planet.com news


Security Bug in Linksys Wireless-G Router
By Ryan Naraine

June 2, 2004

A security bypass flaw in a popular wireless broadband router shipped by Cisco's Linksys unit could give malicious hackers administrative access to vulnerable devices, researchers warned on Wednesday.

Independent technology consultant Alan W. Rateliff discovered the flaw during a client installation of a Linksys WRT54G Wireless-G Broadband Router. After reporting the vulnerability to Linksys, Rateliff posted a warning on a public mailing list that even if the remote administration function is turned off, the router provides the administration Web page to ports 80 and 443 on the WAN.

"The implications are obvious: out of the box the unit gives full access to its administration from the WAN using the default or, if the user even bothered to change it, an easily guessed password," he said.

Security consultants Secunia rates the flaw as "moderately critical" and urged users to configure a strong password for the administrative Web interface or restrict access to the interface altogether.

As a workaround until a firmware upgrade is issued, Rateliff recommends the use of port forwarding send ports 80 and 443 to non-existent hosts. "Note that forwarding the ports to any hosts -- including listening ones if you are actually running servers -- will override the default behavior," he explained.

The Linksys Wireless-G Broadband Router is marketed as three devices in one box -- a Wireless Access Point, a 4-port 10/100 Switch to connect your wired-Ethernet devices and a router function that lets users network share a high-speed cable or DSL Internet connection, files, and other resources such as printers and hard disk storage space.

The Linksys WRT54G product offers wireless data rates up to 54Mbps -- 5 times as fast as Wireless-B (802.11b), but also interoperable with Wireless-B devices (at 11Mbps).

 

Tools: Email this Article View Printable Version
News Archives | 7 day summary

Add wi-fiplanet.com to your favorites
Add wi-fiplanet.com to your browser search box
IE 7 | Firefox 2.0 | Firefox 1.5.x
Receive news via our XML/RSS feed








The Network for Technology Professionals

Search:

About Internet.com

Legal Notices, Licensing, Permissions, Privacy Policy.
Advertise | Newsletters | E-mail Offers