[36106] in bugtraq
NETGEAR DG834G SPECIAL FEATURES
daemon@ATHENA.MIT.EDU (thanasonic@hack.gr)
Thu Aug 12 18:33:29 2004
Date: 12 Aug 2004 17:39:08 -0000
Message-ID: <20040812173908.5199.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: <thanasonic@hack.gr>
To: bugtraq@securityfocus.com
By opening http://192.168.0.1/setup.cgi?todo=debug you enable the router's debug mode.Then you just telnet at 192.168.0.1 at port 23 and then you have a root shell.
Also i found that if you just telnet to 192.168.0.1 2602 you will get a prompt from the service ZEBRA that is running on the router.By giving "zebra" as password *which is the default password* you got also a root shell.