SHARE
Facebook X Pinterest WhatsApp

Security Bug in Linksys Wireless-G Router

Written By
thumbnail
Ryan Naraine
Ryan Naraine
Jun 2, 2004

A security bypass flaw in a popular wireless broadband router shipped by
Cisco’s Linksys unit could give malicious hackers
administrative access to vulnerable devices, researchers warned on
Wednesday.

Independent technology consultant Alan W. Rateliff discovered the flaw
during a client installation of a Linksys WRT54G Wireless-G Broadband
Router. After reporting the vulnerability to Linksys, Rateliff posted a warning on a
public mailing list that even if the remote administration function is
turned off, the router provides the administration Web page to ports 80 and
443 on the WAN.

“The implications are obvious: out of the box the unit gives full access
to its administration
from the WAN using the default or, if the user even bothered to change it,
an easily guessed password,” he said.

Security consultants Secunia rates the flaw as “moderately critical” and urged users to configure a strong password for the administrative Web interface or restrict access to the interface altogether.

As a workaround until a firmware upgrade is issued, Rateliff recommends the use of port forwarding send ports 80 and 443 to non-existent hosts. “Note that forwarding the ports to any hosts — including listening ones if you are actually running servers — will override the default behavior,” he explained.

The Linksys Wireless-G Broadband Router is marketed as three devices in one box — a Wireless Access Point, a 4-port 10/100 Switch to connect your wired-Ethernet devices and a router function that lets users network share a high-speed cable or DSL Internet connection, files, and other resources such as printers and hard disk storage space.

The Linksys WRT54G product offers wireless data rates up to 54Mbps — 5 times as fast as Wireless-B (802.11b), but also interoperable with Wireless-B devices (at 11Mbps).

Recommended for you...

Insteon’s Surprise Failure Highlights the Problems with Smart Home Tech
Rob Enderle
Apr 22, 2022
Intel Looks to Partner in Competitive Chip Market
Jeff Burt
Jun 29, 2021
Pandemic Fuels Demand for SASE, Versa Report Says
Jeff Burt
Jun 18, 2021
IBM Pushes Deeper into Hybrid Cloud, AI
Jeff Burt
May 13, 2021
Internet News Logo

InternetNews is a source of industry news and intelligence for IT professionals from all branches of the technology world. InternetNews focuses on helping professionals grow their knowledge base and authority in their field with the top news and trends in Software, IT Management, Networking & Communications, and Small Business.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.