Easily Exploitable Vulnerability Found in Netis Routers

Aug. 26, 2014

A remote attacker that knows the targeted router's external IP address can gain access to it through the UDP port 53413. In order to get to the actual backdoor, the attacker must enter a password, but this feature provides little protection because the password is hardcoded in the firmware. Furthermore, all Netcore/Netis routers seem to have the same password.