Remote root dd-wrt -------------------------------------------------------------------------------- Written by Michael Brooks Special thanks to str0ke Exploits tested on the newist stable version: Firmware: DD-WRT v24-sp1 (07/27/08) micro Product Homepage: http://dd-wrt.com/ Impact: 1)Remote root command execuiton /bin/sh 2)Change web administration password and enable remote admistration 3)create new Port Forwarding rules to byass NAT. Remote root command execution /bin/sh


enable remote administration and change login to root:password


Change Port Forwarding to byass NAT protection.
# milw0rm.com [2008-12-08]