The B-FOCuS Wireless 802.11b and g ADSL2+ Router by "ECI Telecom LTD" is prone to a directory listing Vulnerability in the web based management system.
714135055ab59d461d5daf1662e012d14ba867ecde97fd1692e5db374ba88471
·= Security Advisory =·
Issue: B-FOCuS Wireless 802.11b/g ADSL2+ Router by "ECI Telecom LTD"
Discovered Date: 02/10/2006
Author: Tal Argoni, LegendaryZion. [talargoni at gmail.com]
Product Vendor: http://www.inoviatele.com/
Details:
B-FOCuS Wireless Router is prone to a directory listing Vulnerability.
The vulnerability exists in Web-Based Management , caused by the lack of
poor configuration.
Exploitation URL:
http://target/html/defs/
Successful exploitation allow viewing the router files and configuration
files.
Proof Of Concept:
http://target/html/defs/
Thanks,
Tal Argoni, CEH
www.zion-security.com