CVE-2008-1526

Z

yXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(PE9) and 3.40(AGD.2) through 3.40(AHQ.3), do not use a salt when calculating an MD5 password hash, which makes it easier for attackers to crack passwords.

Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:zyxel:p-663hn-51_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-663hn-51_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-663hn-51:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:zyxel:p-660h-61_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660h-61_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660h-61:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:o:zyxel:p-660h-63_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660h-63_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660h-63:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:o:zyxel:p-660h-67_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660h-67_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660h-67:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
OR cpe:2.3:o:zyxel:p-660h-d1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660h-d1_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660h-d1:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
OR cpe:2.3:o:zyxel:p-660h-d3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660h-d3_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660h-d3:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
OR cpe:2.3:o:zyxel:p-660hn-51_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660hn-51_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660hn-51:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
OR cpe:2.3:o:zyxel:p-660h-t1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660h-t1_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660h-t1:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
OR cpe:2.3:o:zyxel:p-660hw_d1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660hw_d1_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660hw_d1:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
OR cpe:2.3:o:zyxel:p-660hw_d3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660hw_d3_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660hw_d3:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
OR cpe:2.3:o:zyxel:p-660hw_t3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-660hw_t3_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-660hw_t3:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
OR cpe:2.3:o:zyxel:p-661hnu-f1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-661hnu-f1_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-661hnu-f1:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
OR cpe:2.3:o:zyxel:p-661h_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-661h_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-661h:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
OR cpe:2.3:o:zyxel:p-661hw-d1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-661hw-d1_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-661hw-d1:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
OR cpe:2.3:o:zyxel:p-661hnu-f3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-661hnu-f3_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-661hnu-f3:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
OR cpe:2.3:o:zyxel:p-662hw-d3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-662hw-d3_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-662hw-d3:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
OR cpe:2.3:o:zyxel:p-662hw-d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-662hw-d_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-662hw-d:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
OR cpe:2.3:o:zyxel:p-662hw-d1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-662hw-d1_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-662hw-d1:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
OR cpe:2.3:o:zyxel:p-662h-61_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:p-662h-61_firmware:3.40\(pe9\):*:*:*:*:*:*:*
cpe:2.3:h:zyxel:p-662h-61:-:*:*:*:*:*:*:*

History

21 Nov 2024, 00:44

Type Values Removed Values Added
References () http://www.gnucitizen.org/projects/router-hacking-challenge/ - Broken Link () http://www.gnucitizen.org/projects/router-hacking-challenge/ - Broken Link
References () http://www.procheckup.com/Hacking_ZyXEL_Gateways.pdf - Broken Link () http://www.procheckup.com/Hacking_ZyXEL_Gateways.pdf - Broken Link
References () http://www.securityfocus.com/archive/1/489009/100/0/threaded - Broken Link, Third Party Advisory, VDB Entry () http://www.securityfocus.com/archive/1/489009/100/0/threaded - Broken Link, Third Party Advisory, VDB Entry