BigPond Wireless Broadband Gateway 3G21WB contains a flaw that is triggered when the ping.cgi script fails to properly validate certain input during the parsing of a specially crafted HTTP request. This may allow a remote attacker to execute arbitrary shell commands.
Classification
Location:
Remote / Network Access
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Solution:
Solution Unknown
Exploit:
Exploit Public
Disclosure:
No Vendor Response
Solution
OSVDB is not aware of a solution for this vulnerability.