what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

AS05080401.txt

AS05080401.txt
Posted Dec 14, 2005
Authored by Jonathan Read, Seth Fogie | Site airscanner.com

Airscanner Mobile Security Advisory: Pocket Controller version 5.0 is susceptible to hard reset, data wipe, and denial of service conditions.

tags | advisory, denial of service
SHA-256 | 1a2768325a0f44d004051b7f5875697174f0732702bfa1d830781eb78b2d3352

AS05080401.txt

Change Mirror Download

-------------------------------------
Airscanner Mobile Security Advisory: (#AS05080401) (Critical)
-------------------------------------

Remote Hard Reset Data Wipe and DoS of Pocket Controller v5.0 (#AS05080401)


Date of discovery: August 4, 2005

Product:
Pocket Controller-Professional V5 (latest edition)

Platform:
Windows Mobile .NET, Windows Mobile Pocket PC

Requirements:
Windows Mobile

Credits:
Jonathan Read (CISSP) and Seth Fogie
Airscanner Mobile Security
www.airscanner.com

Mobile Antivirus Researcher's Association
http://www.mobileav.org/

Severity:
Medium to High since any PDA running the application can be “hard reset” (up to complete loss of all data and installed applications) using a remote connection. This vulnerability can also be exploited over a wireless connection.

Summary:
Pocket Controller Professional is a popular, powerful remote control and management program that allows a user to remotely control a PDA from their PC computer. See http://www.soti.net/ for more information. Several feature of this program is that it can remotely turn off, reboot, and reset the PDA. We discovered that these commands can be performed without the client program sending only three packets to the target PDA.

Details:
Connect to port 5492 on PDA that is running the target client program. First send an initialization packet to the PDA. Next send a packet containing the desired command (turn off, reboot, hard reset) to the PDA. Finally, create a new socket and reset the intitialization packet. Upon receipt, the PDA will perform the selected function. PoC is available for MARA members.

Workaround:
No work around available.

Initial Vendor Notification: August 4, 2005

Initial Vendor Response: Awaiting response.


--------------------------------------------------------------------
Legal:
Copyright (c) 2005 Airscanner Corp.

Permission is granted for the redistribution of this alert electronically. It may not be edited in any way without the express written consent of Airscanner Corp. If you wish to reprint the whole or any part of this alert in any other medium other than electronically, please contact Airscanner Corp. for permission.

Disclaimer: The information in the advisory is believed to be accurate at the time of publishing based on currently available information. Use of the information constitutes acceptance for use on an AS IS condition. There are no warranties with regard to this information. Neither the author nor the publisher accepts any liability for any direct, indirect, or consequential loss or damage arising from use of, or reliance on, this information.
--------------------------------------------------------------------

This advisory can be viewed online at
http://www.airscanner.com/security/pocketcontroller.htm
Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close