FTP: Zyxel Configuration File Request
This signature detects attempts to exploit a known vulnerability in Zyxel Prestige 600 Series DSL CPE device. Using a default password, attackers can access and download device configuration files using FTP.
Extended Description
In the default factory configuration settings, Prestige routers have the administrative Telnet and FTP services available on the WAN interface. ZyXEL also uses a single common default administrator password. On a Prestige router with the default password still set, any user can connect remotely and make configuration changes, firmware upgrades, and password changes.
Affected Products
Zyxel prestige_642r
References
BugTraq: 3161
CVE: CVE-1999-0571
URL: http://archives.neohapsis.com/archives/bugtraq/2001-08/0101.html http://xforce.iss.net/xforce/xfdb/6968
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Zyxel
10.0