Quantcast
Channel: SmallNetBuilder Forums
Viewing all articles
Browse latest Browse all 6885

Security bug : Administration reachable over WAN

$
0
0
Hi everybody, and thanks for all the good work done here !

I came upon a strange issue on my Asus RT-AC66U running Merlin's 3.0.0.4.374.39 in router mode :

- when the router's firewall is disabled, the administration page is available from the WAN on port 80
- with the firewall enabled, when OpenVPN Server 1 (the only one I checked) is enabled, the administration page is available from the WAN on port 80

In both case, "Administration from WAN" in administration -> system was disabled (the port was 8080 anyway). The behavior was the same after a NVRAM clear (WPS+on).

Did do something horribly wrong, or is there some bug lurking in there ?

Viewing all articles
Browse latest Browse all 6885

Trending Articles