Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

scip_Advisory 3808 - D-Link DIR-100 long url filter evasion

Loading...

Sign in or sign up now!
4,615
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Sep 8, 2008

http://www.scip.ch/?vuldb.3808

D-Link DIR-100 is a small and cost-effective router and firewall device for small offices and home users.

Marc Ruef at scip AG found a possibility to evade url filters of the web proxy to prevent access to web sites. An attacker might add a very long string to the url to access web resources althought their access is forbidden. It is possible to exploit the vulnerability with a common web browser by using a long url (approx. 1'300 chars). You can expand the length of the url by adding a non-used http get request parameter.

Detection of web based attacks requires a specialized web proxy and/or intrusion detection system. Patterns for such a detection are available and easy to implement.

We have informed D-Link on an early stage. Our technical requests were not answered nor confirmed. Therefore, not official statement, patch or upgrade is available. We suggest the use of another device for filtering forbidden web resources successfully.

Category:

Science & Technology

Tags:

License:

Standard YouTube License

  • likes, 0 dislikes

Link to this comment:

Share to:
see all

All Comments (1)

Sign In or Sign Up now to post a comment!
  • w00t I bought this router today... well, I'm not going to censorship my home anyways lol.

Loading...

0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more