A user can deny access to the web-based administration by establishing 30 connections to the web-based administration port (80) on the Microsoft MN-500 Wireless Router. Until the connections are closed, the router administrator cannot access the web-based administration.
9eb7fa9b0faacd20f011010c664c60362d59d51325c8fb8bda4a97e82a6c3447
------------------------------------------------------------------------
* Microsoft MN-500 Wireless Router Web-Based Administration DoS*
*Vulnerability ID Number:*
0406213
* Overview:*
A vulnerability has been found in the Microsoft MN-500 Wireless Router
Web-Based Administration.
* Vendor:*
Microsoft (http://www.microsoft.com <http://www.microsoft.com/>)
* Vulnerability/Exploit:*
A user can deny access to the web-based administration by establishing
30 connections to the web-based administration port (80). Until the
connections are closed, the router administrator cannot access the
web-based administration.
* Workaround:*
None so far.
* Date Discovered:*
June 21, 2004
* Severity:*
Medium
* Credit:*
Paul Kurczaba
Kurczaba Associates
Visit http://www.kurczaba.com/mailinglists.htm for mailing lists in
Security, Encryption, Wireless, MS-Security, and Production Security.
Copyright 2003-2004 Kurczaba Associates