Here's one way to disable the backdoor: I used the EXPERT login to download /active/ip.ini by ftp, removed all the apadd and rdadd lines, turned off forwarding for good measure, and re-uploaded it. After resetting the device, I can't ping it or connect to it on any port, and yet it still functions as a DSL modem. I suppose this closes all the holes except DSLAM access. -- see shy jo
- multiple vulnerabilities in Alcatel Speed Touch DSL mod... Tom Perrine
- Re: multiple vulnerabilities in Alcatel Speed Touc... Gerrie
- Re: multiple vulnerabilities in Alcatel Speed ... Tom Perrine
- Re: multiple vulnerabilities in Alcatel Speed ... Joey Hess
- Re: multiple vulnerabilities in Alcatel Sp... teespy
- Re: multiple vulnerabilities in Alcate... Marcus Butler
- Re: multiple vulnerabilities in Alcatel Sp... Tom Perrine
- Re: multiple vulnerabilities in Alcatel Sp... Hugo van der Kooij
- Re: multiple vulnerabilities in Alcatel Speed Touc... Mark (Mookie)
- Re: multiple vulnerabilities in Alcatel Speed ... Renaud Deraison
- Re: multiple vulnerabilities in Alcatel Speed ... Tom Perrine
- Re: multiple vulnerabilities in Alcatel Speed Touc... SpaceTime
- Re: multiple vulnerabilities in Alcatel Speed ... Bryan K. Watson
- Re: multiple vulnerabilities in Alcatel Speed ... Michael A. Nunes
