Executive brief
Ascom Timeplex routers contain a security flaw that allows unauthorized individuals to bypass login requirements and access a sensitive debug mode. By sending a specific sequence of characters, an attacker can gain control over the router, potentially leading to network outages, data interception, or unauthorized configuration changes. This poses a significant risk to the integrity and availability of the corporate network infrastructure.
Technical details
The Ascom Timeplex router firmware fails to properly restrict access to its internal debug mode. An unauthenticated remote attacker can trigger this mode by sending a specific sequence of CTRL-D characters to the device. Once entered, the debug mode provides a prompt that allows for register-level manipulation, viewing of IP configuration data, and the ability to reset the device. This effectively bypasses standard authentication mechanisms, allowing for complete device compromise, denial of service, or information disclosure.
Affected products
- Ascom Timeplex Router
Timeline
- 1997-05-15: disclosed: Initial discovery by MicroSolved reported on Bugtraq.
- 1997-05-15: advisory