RE: Possible security problem??

From: Jaya Baloo (jaya@xs4all.nl)
Date: 08/20/01


Message-ID: <01C12958.EAEAC5C0.jaya@xs4all.nl>
From: Jaya Baloo <jaya@xs4all.nl>
To: 'Malcolm Topperwien' <malcolmt@rcstech.com.au>, "'Stuart_Luscombe@computacenter.com'" <Stuart_Luscombe@computacenter.com>, "security-basics@securityfocus.com" <security-basics@securityfocus.com>
Subject: RE: Possible security problem??
Date: Mon, 20 Aug 2001 09:17:20 +0200

Gentlemen,

        the 10.0.0.0 range is a private range of addresses and is therefore not
reachable by any malicous users on the internet. In order to be able to
reach the device from the internet you would need to the public IP
addresses used where NAT occurs from the 10. address.
 In any case you should both consider usage of personal firewalls// access
lists on any machine "directly connected" to the internet.

Jaya Baloo
KPN Telecom
International Consultancy
Tel: +264 (61)2012506
Mobile: +31-6-51569107
E-mail: jaya@xs4all.nl

-----Original Message-----
From: Malcolm Topperwien [SMTP:malcolmt@rcstech.com.au]
Sent: maandag, augustus 20, 2001 5:21
To: 'Stuart_Luscombe@computacenter.com'; security-basics@securityfocus.com
Subject: RE: Possible security problem??

Hi there.

I was speaking to another consultant the other day in regards to this
issue.
It seems that the IP of the Alcatel DSL Modem (If it's the same as the ones
here in Australia, Alcatel Home ADSL Modem) has a Web Service on it.

I belive that the IP was something in the 10.x.x.x range possibly 10.0.0.39
?

The other consultant told me that it was a monitoring interface and was
only
useful to monitor status of the link and possibly a few oher things about
the modem. I have not investigated this further.

Malcolm

-----Original Message-----
From: Stuart_Luscombe@computacenter.com
[mailto:Stuart_Luscombe@computacenter.com]
Sent: Friday, 17 August 2001 6:24 PM
To: security-basics@securityfocus.com
Subject: Possible security problem??

I have an Alcatel DSL router connected to my network. After a curious
thought
yesterday, I wondered if the
web-based interface would be accesible via the IP address assigned to me by
my
ISP. After tapping in the address
to IE, sure enough the interface came up. I did a portscan on that address
and
it showed that port 80 was open.
However, if I try and access it from anywhere else (i.e. a friends house),
it
looks as if it will connect but just times
out....

Is this something I should be worried about? And if it is, is there anyway
I
can
sort it out?

--
Stuart

If you are not the intended recipient be advised that you have received this email in error and any use, dissemination, forwarding, printing or copying of it is strictly prohibited. It is the responsibility of the addressee to scan this mail and any attachments for computer viruses or other defects. The sender does not accept liability for any loss or damage of any nature, however caused, which may result directly or indirectly from this email or any file attached.



Relevant Pages

  • Internet thru Cisco 871
    ... SDM wizards and didn't get the internet. ... expected static IP address on the Dialer0 interface but fail ping ... zone security private ... ip http access-class 3 ...
    (comp.dcom.sys.cisco)
  • Re: DHCP through RAS
    ... That means that the machine dialing in has a modem and it's ... Your RAS identifies it as an interface that needs an IP ... an IP address via DHCP. ... >Astaro Security Linux, the comprehensive security solution that combines six ...
    (Focus-Microsoft)
  • Re: Internet No Longer Works
    ... I had an issue like this, I had used an extra interface and put a static ... > I run FreeBSD-4.9 as a gateway to the Internet for a small LAN. ... > connected to an ISP almost 24/7. ... > probably right as I'm using the modem in my laptop from work on the same ...
    (comp.unix.bsd.freebsd.misc)
  • Hawking Technologies HAR11A router considered insecure
    ... http://www.hawkingtech.com/images/productlg/HAR11%20View.jpg) security ... hole by using telnetto connect to port 254 on it. ... will find an undocumented management interface which allows you to see ... The safest thing to do is to put the modem into 'bridge mode' and do ...
    (Bugtraq)
  • RE: Possible security problem??
    ... router and altering settings.... ... Subject: RE: Possible security problem?? ... reach the device from the internet you would need to the public IP ... The other consultant told me that it was a monitoring interface and was ...
    (Security-Basics)