Said by: I agree it would be nice but quite difficult to do. The problem is that all pages are generated on-the-fly by the OpenRG process, so there's no HTML files to play with. I'm currently looking into using your method to patch the openrg process in memory. As you may know it does actually contain code for displaying stats in the GUI, but this is only intended to be accessed by Bell (it's limited to remote access over port 50001, this is checked in code by calling gui_getHTTPPortUsed). The page looks something like, when I get home later I'm going to see if I can build a binary that either modifies openrg at runtime, or I already have a modified binary that I haven't had much use for until now that could be built into an image and flashed instead. Said by: Worse case it would be nice to have a stats menu entry added to the copy.
Then just ignore the original index file.I agree it would be nice but quite difficult to do. The problem is that all pages are generated on-the-fly by the OpenRG process, so there's no HTML files to play with.Ya, I'm beginning to understand the limitations based on t3st3r' posts. Hope I'm not being too annoying as an armchair quarterback with no skin in the game:-( The sample code you've provided should open up a lot of opportunity for those who want to tinker. I could see that page in the dump of the openRG executable but I couldn't see how it was accessed. There are a couple of other advanced settings and log pages that are referenced but I can't see them in the executable.
Telnet accepts its command on stdin, so you just need to pipe or write the commands into it: telnet 10.1.1.1 telnet.
It could be that they're locked behind that same check. You can write to a specific memory address using the 'sysutil mwrite' command. If you know where the 'gui_getHTTPPortUsed' variable is stored you should be able to patch it directly using the exploit sibisties found. Otherwise, if you know of a way to sign the file headers so that the modem will accept them we could have a lot of fun with custom firmware. I've been able to run everything except the 'openRG' file from a dump of the Sagemcom 2764 firmware on my modem.
Our downloads database is updated daily to provide the latest download releases on offer. Borland developer studio 2006 serial number authorization key.
If I could re-pack the openRG file it would give the full web UI. One other thing, do you know what firewall restriction is on port 50001? It's open but filtered on the LAN side, do you know what address it's expecting? I found a rather rough way to get access to that portal just by editing the config file. *NOTE - This still requires that you downgrade your firmware to v66396 using the TFTP method, there is still no way to access the config with the v6740S firmware* If you change/disable the port the firewall rule applies to then you can access the portal on 50001. You have to log in to the portal using the username that is the serial number of your modem though.