Re: [Full-disclosure] security hole on local ISP

2009-12-30 Thread Cilia Pretel Gallo
I forgot to mention some info on that. The IP range 200.119.0/17 corresponds to ETB, too. Also I happen to know two of the modems they use: Huawei EchoLife HG520s (by far the most common) Thomson TG585 Peace, -Cilia --- El mar 29-dic-09, Cilia Pretel Gallo escribió: > De: Cilia Pretel Ga

[Full-disclosure] security hole on local ISP

2009-12-29 Thread Cilia Pretel Gallo
I've recently discovered a security hole on the modems (which double as routers) used by a Colombian ISP - ETB. It so happens that all incoming connections to an IP address on said ISP on port 23 or port 80 land on the modem instead of the computer(s) connected to it. Even if one tries to redir