4 ms·
Article with sources: https://www.zdnet.com/article/white-hat-hacker-discloses-magyar-telekom-vulnerability-faces-jail/ https://www.zdnet.com/article/white-hat-
by aboutruby 8y ago
Article with sources: https://www.zdnet.com/article/white-hat-hacker-discloses-magyar-telekom-vulnerability-faces-jail/ https://www.zdnet.com/article/white-hat-hacker-discloses-mag...
> the first vulnerability allowed the hacker to obtain an administrator password through a public-facing service. The second bug allowed him to "create a test user with administrative privileges."
Translated source article with much more information: https://translate.google.com/translate?sl=auto&tl=en&u=https%3A%2F%2Findex.hu%2Fbelfold%2F2017%2F07%2F26%2Ftelekom_t-systems_biztonsagi_res_nni_etikus_hekker_rendorseg_nni_orizetbe_vetel%2F https://translate.google.com/translate?sl=auto&tl=en&u=https...
> She browsed and found a user guide in a PDF file on the Telekom website that contained the IP address of a DNS server. Performed a routine scan for this IP address and then surprised to find that it was relatively easy to get an administrator password from here.