Showing posts with label Firmware. Show all posts
Showing posts with label Firmware. Show all posts

Monday, December 23, 2024

Upgrade a old DIR-850L which is running on 1.13 (Hardware version A1) to the latest version firmware 1.20



DIR-850L Firmware Release Notes
=================================

**Note: a factory reset is recommended after upgrading to ensure correct configuration is applied**


Hardware: A1
Firmware: V1.20
Date: 20/09/2017


NOTE:
THE FIRMWARE V1.15WWB04 NEEDS TO BE UPLOADED FIRST AS A TRANSITIONAL FIRMWARE V1.15, BEFORE UPGRADING TO V1.20WWB03.
Upgrade to Firmware V1.15 and then instantly go back into the web user interface and upgrade to Firmware V1.20

Problems Resolved:
1. Fixed the following security issues
- Firmware Protection
- WAN & LAN XSS exploit
- WAN - weak cloud control
- WAN & LAN - Stunnel Private Keys
- WAN & LAN - Nonce brute force for DNS configuration
- Local - WEak file permission and credentials stored in clear text
- Local - DoS attack against some daemons


Print Friendly and PDF
Share/Bookmark

Wednesday, August 7, 2024

D-Link DIR-867 and WPA3 support

January 29, 2024 NOTICE - This hardware revision will no longer receive firmware updates after the End of Support date
(EoS): March 29, 2024.


If you are using DIR-867, it is good for you to upgrade to the latest version 1.30 since it was fixed several bugs and also it is support WPA3.


Firmware - Hardware A1:

Print Friendly and PDF
Share/Bookmark

Friday, June 28, 2024

ASUS RT-AX56U action required to upgrade firmware

Firmware version 3.0.0.4.386_51679
- Release Note -

Security updates:
 - Fixed command injection vulnerability.
 - Fixed the ARP poisoning vulnerability.
 - Fixed code execution in custom OVPN.
 - Fixed the injection vulnerability in AiCloud.
 - Fixed stack buffer overflow in lighttpd.
 - Fixed CVE-2023-35720
 - Fixed the code execution vulnerability in AiCloud.
 - Fixed the XSS and Self-reflected HTML injection vulnerability.

*Please be advised that due to a security upgrade in AiMesh, we strongly recommend against downgrading to previous firmware versions, as this may lead to connection issues. Should you encounter any difficulties, resetting the AiMesh router to its default settings and re-establishing the mesh connection can resolve the problem.

Print Friendly and PDF
Share/Bookmark

Thursday, February 22, 2024

Hillstone storeID able to raise support case, download image, access free training, manual and document.

In the support portal, one important information is recommended versions.


Print Friendly and PDF
Share/Bookmark

Monday, February 5, 2024

H3C IPS upgrade firmware

H3C IPS upgrade firmware

  1. Download the latest version of H3C firmware https://h3csoftware.site/cloud/index.php/s/FDcQBsoz1KRGzsF

 

  1. Upload the SECPATH5080T-CMWxxxxxx.ipe to the H3C IPS:


  1. Select the new boot and system files uploaded from the extraction by the H3C device from xxx.ipe:


  1. Click "Operations", apply to all location:

  1. Click "Close"


  1. Go to maintenance, select reboot and save the running configuration for all contexts

 

  1. Waiting for 15 mins, then it will back to online with latest firmware

Print Friendly and PDF
Share/Bookmark

Sunday, December 24, 2023

TP-Link Tapo c200 IP Camera need to upgrade firmware and also enable auto update

Upgrade path: 
Version 1.3.5 upgrade to 1.3.9, then 1.3.11



Since TP-Link C200 no need to open firewall port and also setup DDNS or fixed IP, you only need to use the TP-Link mobile app to connect, upgrade firmware is very important to secure your IP camera. 

Print Friendly and PDF
Share/Bookmark

Thursday, December 14, 2023

Sophos Firewall failed to access web admin console after upgrade from SFOS 19.0.3 MR-3-Build517 to SFOS 19.5.3 MR-3-Build652

After the upgrade, you still able to see the login page:
And also, you able to access Internet via the firewall:

But you failed to login the firewall web console: (Return a blank page)


You able to access firewall via SSH:

Solution:
Use SSH to login, then select "7" , then "R" to reboot the firewall.

Reference:

Print Friendly and PDF
Share/Bookmark

Wednesday, September 6, 2023

ASUS routers RT-AX55, AX56U_V2 and RT-AC86U vulnerable to critical remote code execution flaws (CVSS 9.8)

The Asus RT-AX55 and AX56U_V2 are same hardware and firmware but different market only.

 

The AX56U are different hardware and firmware. And also, the AX56U latest firmware on ASUS RT-AX56U 韌體版本 3.0.0.4.386.51665

 

 

Firmware:

ASUS RT-AX55 Firmware version 3.0.0.4.386_52041

Version 3.0.0.4.386_52041

65.17 MB

2023/08/31

https://www.asus.com/networking-iot-servers/whole-home-mesh-wifi-system/all-series/rt-ax55/helpdesk_bios/?model2Name=RT-AX55

 

Reference:

https://www.bleepingcomputer.com/news/security/asus-routers-vulnerable-to-critical-remote-code-execution-flaws/?s=03 

https://www.hkepc.com/forum/viewthread.php?fid=12&tid=2598705&extra=&page=2

https://www.hkepc.com/forum/viewthread.php?fid=12&tid=2598169&page=1

https://rog-forum.asus.com/t5/gaming-network-products/rt-ax56u-high-cpu-and-high-ram-leading-to-stop-routing-after-a/td-p/930133/page/2

TWCERT/CC台灣電腦網路危機處理暨協調中心|企業資安通報協處|資安情資分享|漏洞通報|資安聯盟|資安電子報-ASUS RT-AX55、RT-AX56U_V2、RT-AC86U - Format String - 1

TWCERT/CC台灣電腦網路危機處理暨協調中心|企業資安通報協處|資安情資分享|漏洞通報|資安聯盟|資安電子報-ASUS RT-AX55、RT-AX56U_V2、RT-AC86U - Format String - 2

TWCERT/CC台灣電腦網路危機處理暨協調中心|企業資安通報協處|資安情資分享|漏洞通報|資安聯盟|資安電子報-ASUS RT-AX55、RT-AX56U_V2、RT-AC86U - Format String - 3

 

Print Friendly and PDF
Share/Bookmark

Thursday, June 22, 2023

Failed to connect to OpenVPN server after upgrade ASUS router firmware

 

On the OpenVPN client, you receive the following error:

 

AUTH_FAILED (Authentication Fail)

 

 

Solution:

Change the "Allow only specified clients" to "No"

 

 

Print Friendly and PDF
Share/Bookmark

Friday, March 10, 2023

Hillstone SG-6000-A1000 upgrade firmware

 

  1. Click "System", you will see your existing firmware version.

 

 

  1. Go to https://support.hillstonenet.com/

 

To download image, login support portal -> tools -> images download.

 

Moreover, To create Hillstone account, you just need to open below link and kick – login with StoneID, then select register, to create new account.

https://kb.hillstonenet.com/en/

  1. Download the firmware which is SG6000-A-1-5.5xxxxx

  1. Click "Upgrade"

 

  1. Click "Browse" to select the new firmware

 

  1. Make sure you backup your configuration file before you apply the new firmware and also click reboot now to make the new firmware take effect.

After the reboot, you will find the firmware have been updated.

 

 

Remark:

 

If you license expired, you will failed to upgrade your firmware.

 

Print Friendly and PDF
Share/Bookmark

Sunday, January 15, 2023

Upgrade a Ruijie EW1800GX-PRO firmware to 1.78.1517

  1. Go to the ruijie network website to search the "EW1800GX"

 

  1. Download the firmware – 1.78.1517

https://www.ruijienetworks.com/support/documents/slide_76702

 

 

 

  1. Go to "System" – "Upgrade"

 

  1. Select local upgrade

 

  1. Click "Browse" and select the file "EW_3.0(1)B11P78_EW1800GX-PRO_09151719.tar.gz" and then upload it

  1. Click OK to start the upgrade (Make sure you select "Keep Setup" before click "OK")

 

  1. Wait for few minutes, then the upgrade complete

 

 

Print Friendly and PDF
Share/Bookmark

Tuesday, January 15, 2019

DrayTek Vigor2960 firmware upgrade to 1.4.1

The existing firmware on the Vigor2960 is 1.2.1:

clip_image001

Go to the firmware upgrade page:

clip_image002

Go to download 1.4.1 http://www.draytek.com.tw/ftp/Vigor2960/Firmware/v1.4.1/Vigor2960_v1.4.1.zip

The firmware and document:

https://www.draytek.com/zh/download/firmware/vigor2960/


Unzip it and upload it.

clip_image003

Click the “Upgrade”

clip_image004

Click “OK” to reboot the firewall.

clip_image005

After the reboot, the upgrade completed.

clip_image006

Done.


Remark: Due to the firmware size limitation, for devices using firmware version 1.0.5 or earlier, it is suggested to upgrade to firmware version 1.0.7.1 first before upgrading to version 1.0.9 or later.

It is not apply to the above case since it is already on 1.2.1


Reference:

Release Note for Vigor2960

http://www.draytek.com.tw/ftp/Vigor2960/Firmware/v1.4.1/DrayTek_Vigor2960_V1.4.1_release-note.pdf

Appendix:

You can also check the “Firmware Patch” and also “APP Signature Upgrade” to keep the firewall up to date.

clip_image007 Print Friendly and PDF
Share/Bookmark

Saturday, December 29, 2018

Huawei Firewall USG 6305 – Basic Setup and Upgrade Firmware

1. Set fixed IP on laptop (e.g. 192.168.0.2 /24) and connect to ETH 0/0 (Port 0)

2. Open browser access https://192.168.0.1:8443

clip_image002

3. Default login : Username: admin Password: Admin@123

4. Force change password

clip_image004

5. Follow the setup Wizard to complete the basic setup

clip_image002[4]


Remark:

1. Download firmware (You need to register a free customer account by using the product SN or contract number)

clip_image002[6]

For USG 6305, you need to use the mini one


2. After upgrade , delete the old one (To free up space)

clip_image002[8] Print Friendly and PDF
Share/Bookmark

Tuesday, December 5, 2017

Lenovo x230 upgrade Intel ME firmware (8.1.72.3002) to resolve SA-00086 vulnerability (Intel Management Engine Critical Firmware Update (Intel-SA-00086))

Firmware for Intel ME on x230 https://pcsupport.lenovo.com/hk/en/downloads/ds032435

Fixed the following security vulnerabilities: CVE-2017-5711, CVE-2017-5712, CVE-2017-13077, CVE-2017-13078, CVE-2017-13080.

After upgrade, the result at the following:

image

Download the detection tools

Intel-SA-00086 Detection Tool

https://downloadcenter.intel.com/download/27150

Reference:

https://www.intel.com/content/www/us/en/support/articles/000025619/software.html

https://www.intel.com.tw/content/www/tw/zh/support/articles/000025619/software.html

http://www.dell.com/support/article/us/en/19/sln308237/dell-client-statement-on-intel-me-txe-advisory--intel-sa-00086-?lang=en

https://unwire.hk/2017/11/22/intelmanagementengine/tech-secure/ Print Friendly and PDF
Share/Bookmark

Wednesday, July 12, 2017

LenovoEMC ix4-300d firmware Version 4.1.304.34286 (Release Date 06/28/2017) released - Important update

It is a important update for your NAS, update it ASAP. It is fixing the CVE-2017-7494 on LenovoEMC ix4-300d


Download:

https://lenovo-na-en.custhelp.com/app/answers/detail/a_id/32096


About CVE-2017-7494 "Remote code execution from a writable share" - (AKA: Remote Exploit Linux SMB-NAS "Sambacry")

https://www.symantec.com/security_response/attacksignatures/detail.jsp?asid=30024

https://www.govcert.gov.hk/weekly_report/2017w21.pdf

Print Friendly and PDF
Share/Bookmark

LenovoEMC PX4-300d firmware Version 4.1.304.34286 (Release Date 06/28/2017) released - Important update

It is a important update for your NAS, update it ASAP. It is fixing the CVE-2017-7494 on LenovoEMC PX4-300d


Download: https://lenovo-na-en.custhelp.com/app/answers/detail/a_id/27363/session/L3RpbWUvMTQ5OTc1OTMxOC9zaWQvKlpBUzNqbm4%3D


About CVE-2017-7494 "Remote code execution from a writable share" - (AKA: Remote Exploit Linux SMB-NAS "Sambacry")

https://www.symantec.com/security_response/attacksignatures/detail.jsp?asid=30024

https://www.govcert.gov.hk/weekly_report/2017w21.pdf Print Friendly and PDF
Share/Bookmark

Monday, June 26, 2017

Upgrade Samsung TV (UA32H5100AJXZK) firmware

1. Check your Samsung TV Model, Model Code, firmware version....

image

image

image

image

2. Go to download the firmware from http://www.samsung.com/hk/support/model/UA32H5100AJXZK

image

3. Run the unzip and copy the "upgrade.msd" to the root of the USB thumb drive

image

4. Connect the USB thumb drive to the TV and run "upgrade"

image

5. It will ask you to use the "USB" source to upgrade or not, please click "yes" to use "USB" source.

image

6. Click "Yes"

image

7. Wait for auto restart the TV

image

8. You will a message box like the following:

image

The upgrade completed.

image

Print Friendly and PDF
Share/Bookmark