A user can deny access to the web-based administration by establishing 7 connections to the web-based administration port (80) in the Netgear FVS318 VPN Router. Until the 7 connections are closed, the router administrator cannot access the web-based administration.
77be9a97404a9717378c0f2ab65614511596841eee00cf9f40135e461979c75c
NETGEAR FVS318 Web-Based Administration DoS
http://www.kurczaba.com/securityadvisories/0406211.htm
-------------------------------------------------------------
Vulnerability ID Number:
0406211
Overview:
A vulnerability has been found in the Netgear FVS318 VPN Router Web-Based Administration.
Vendor:
Netgear (http://www.netgear.com)
Vulnerability/Exploit:
A user can deny access to the web-based administration by establishing 7 connections to the web-based administration port (80). Until the 7 connections are closed, the router administrator cannot access the web-based administration.
Workaround:
None so far.
Date Discovered:
June 21, 2004
Severity:
Medium
Credit:
Paul Kurczaba
Kurczaba Associates
http://www.kurczaba.com/
Visit http://www.kurczaba.com for mailing lists in Security, Encryption, Wireless, MS-Security, and Production Security.