Menu

Database

UTStarcom F1000 802.11 VOIP Phone Default Telnet Account

WVE ID: WVE-2006-0015

Type: Vulnerability

Status: Candidate

Classification:
Misconfiguration

Description:
The UTStarcom F1000 802.11 VOIP phone allows telnet connections using a default login and password.

Discussion:
The UTStarcom F1000 802.11 VOIP phone provides remote access to itself via a telnet daemon. Accessing the device in this way does require a login and password. However, the operating system that the phone utilizes VxWorks has a well known default account (login: target, password: password) that can be used to obtain access to the device.

Once an attacker has connected to the device through the telnet daemon they have full access to the phone. This may give them the ability to read or write to memory locations, modify the phone's configuration, and to reboot the phone.

This issue can be mitigated by changing the default login and password.

Credits
Author: Shawn Merdinger (shawnmer@gmail.com) : None

References
URL: http://osvdb.org/displayvuln.php?osvdb_id=20964
URL: http://www.securityfocus.com/bid/15476
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3717
URL: http://seclists.org/lists/fulldisclosure/2005/Nov/0544.html
URL: http://www.utstar.com/Solutions/Handsets/WiFi/

Released: 2005-11-16

Submitter
Andrew Lockhart (alockhart@networkchemistry.com) : Network Chemistry

Submitted: Fri Feb 03 10:43:25 -0800 2006

Candidate Date: Fri Feb 03 11:03:04 -0800 2006


Recent Entries

TKIP Replay and Plaintext Discovery
WVE-2008-0013 11/18/2008

Active Https Cookie Hijacking
WVE-2008-0012 9/18/2008

Auto Immune Attack
WVE-2008-0011 9/17/2008

Marvell Null SSID Association Request
WVE-2008-0010 9/15/2008

Marvell EAPOL-Key Length Overflow
WVE-2008-0009 9/15/2008

Atheros IE Tag Overflow
WVE-2008-0008 9/15/2008

Weaknesses in the A5/1 Cipher
WVE-2008-0007 4/9/2008

Block ACK DoS
WVE-2008-0006 4/9/2008

GF Mode WIDS Rogue AP Evasion
WVE-2008-0005 4/9/2008

HT Intolerant Degradation of Service
WVE-2008-0004 4/9/2008

More Entries...

News

SANS Institute Sponsors WVE
4/19/2008

Wireless Attackers and Honeypot Technology
4/15/2008

High Speed Risks in 802.11n Slides Posted
4/11/2008

Vulnerabilities in 802.11n
4/9/2008

WVE Editors Speaking at SHARKFEST.08
1/3/2008

More News...