[olug] Yesterday's dd-wrt release fixes vulnerability

Rob Townley rob.townley at gmail.com
Wed Jul 22 23:31:42 UTC 2009


If you have dd-wrt firmware, you will want to update.  There is a
vulnerability in it that malicious website code could get root just by
visiting that malicious website from behind your dd-wrt firewall, CSRF
style.

Test:    http://192.168.1.1/cgi-bin/;reboot



More information about the OLUG mailing list