[MLB-WIRELESS] Netgear WG602 AP backdoor admin account

from johnno fromjohnno at hotmail.com
Thu Jun 10 17:02:49 EST 2004

well I can say its not working on my WG602 Ver.2 :)
so I'm happy about that!


>From: Chris Samuel <chris at csamuel.org>
>To: <melbwireless at wireless.org.au>
>Subject: [MLB-WIRELESS] Netgear WG602 AP backdoor admin account
>Date: Sun, 6 Jun 2004 10:23:31 +1000
>MIME-Version: 1.0
>Received: from mc9-f11.hotmail.com ([]) by mc9-s15.hotmail.com 
>with Microsoft SMTPSVC(5.0.2195.6824); Sat, 5 Jun 2004 17:32:09 -0700
>Received: from www.wireless.org.au ([]) by 
>mc9-f11.hotmail.com with Microsoft SMTPSVC(5.0.2195.6824); Sat, 5 Jun 2004 
>17:32:08 -0700
>Received: (from majordomo at localhost)by www.wireless.org.au (8.11.6/8.11.6) 
>id i560SGb18691for melbwireless-list; Sun, 6 Jun 2004 10:28:16 +1000
>Received: from inside.csamuel.org (203-219-126-22-vic.tpgi.com.au 
>[])by www.wireless.org.au (8.11.6/8.11.6) with ESMTP id 
>i560NdL18632for <melbwireless at wireless.org.au>; Sun, 6 Jun 2004 10:23:39 
>Received: by inside.csamuel.org (Postfix, from userid 501)id 05FA33E87; 
>Sun,  6 Jun 2004 10:23:37 +1000 (EST)
>X-Message-Info: TSNaxu8CDofun9u8eOxPrJtUJ0fW9JHdrAB+XlhdnZ4=
>X-Authentication-Warning: www.wireless.org.au: majordomo set sender to 
>owner-melbwireless at wireless.org.au using -f
>User-Agent: KMail/1.4.3
>Message-Id: <200406061023.36841.chris at csamuel.org>
>Precedence: list
>Return-Path: owner-melbwireless at wireless.org.au
>X-OriginalArrivalTime: 06 Jun 2004 00:32:09.0101 (UTC) 
>Posted on the Bugtraq list, reference on /.
>	http://www.securityfocus.com/archive/1/365069
>"The webinterface which is reachable from both interfaces (LAN/WLAN)
>contains an undocumented administrative account which cannot be disabled."
>"A search on Google revealed that "5777364" is actually the phonenumber
>of z-com Taiwan which develops and offers WLAN equipment for its OEM
>"Systems Affected
>- ----------------
>         Vulnerable (verified)
>                 WG602 with Firmware Version 1.04.0
>         Possibly vulnerable (not verified)
>                 WG602 with other Firmware Versions
>                 WG602v2
>                 All other z-com derived WLAN Accesspoints"
>- --
>  Chris Samuel  :  http://www.csamuel.org/  :  Melbourne, VIC
>Version: GnuPG v1.0.7 (GNU/Linux)
>To unsubscribe: send mail to majordomo at wireless.org.au
>with "unsubscribe melbwireless" in the body of the message

Open an Online Savings Account today & collect a bonus $30*!  

To unsubscribe: send mail to majordomo at wireless.org.au
with "unsubscribe melbwireless" in the body of the message

More information about the Melbwireless mailing list