republican-creole
site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Share Topic
Post a:
Post a:
AuthorAll Replies


evilghost
Premium
join:2003-11-22
Springville, AL

1 edit

reply to fAcEtIOUs

Re: Not at risk if you changed default password on router

said by fAcEtIOUs:

There is some risk for all those people who neglected to change their password from the default when installing their router at home.

But for anyone who had the brains to change their passwords, this is a a non-event.
Routers vulnerable to CSRF are still exploitable IF the user has a trusted session with the configuration page and accesses a hostile site.

How many routers are using session versus cookies for verifying successful authentication?

MySpareBrain

join:2000-06-12
Pearland, TX

said by evilghost See Profile
Routers vulnerable to CSRF are still exploitable IF the user has a trusted session with the configuration page and accesses a hostile site.

How many routers are using session versus cookies for verifying successful authentication?
[/BQUOTE :


Don't most routers automatically time out the session after a period of time? If I'm in my router, and I stay on the same page for a couple minutes, when I change pages I have to login again.

Wednesday, 30-May 04:59:07 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 12.5 years online © 1999-2012 dslreports.com.
Most commented news this week
Hot Topics