Kitz ADSL Broadband Information
adsl spacer  
Support this site
Home Broadband ISPs Tech Routers Wiki Forum
 
     
   Compare ISP   Rate your ISP
   Glossary   Glossary
 
Please login or register.

Login with username, password and session length
Advanced search  

News:

Pages: 1 ... 6 7 [8] 9 10

Author Topic: VMG8924-B10A unbranded supervisor password  (Read 48542 times)

hushcoden

  • Reg Member
  • ***
  • Posts: 404
Re: VMG8924-B10A unbranded supervisor password
« Reply #105 on: January 24, 2019, 06:43:12 PM »

Code: [Select]
> sys
Usage: sys <atsh|atwz|atsn|ledctl|btt|wanset|gphytest|atse|aten|linkhistory|usb|usbtest|wwanpackage|atmt|atmc|fwselect> [sys command option]
       sys show
       sys help
Logged

tubaman

  • Addicted Kitizen
  • *****
  • Posts: 8394
Re: VMG8924-B10A unbranded supervisor password
« Reply #106 on: January 24, 2019, 06:49:39 PM »

Some of the firmware release notes have previously referred to randomising the supervisor password and my suspicion is that if you clear ROM-D and then factory reset then that is when this  happens.
I believe that to be the case as I have factory reset my 8924 before, but only after I had saved my own config to ROM-D. In this scenario the randomisation has not occurred.
Hopefully rolling back will re-enable 'dumpmdm' and allow you to retrieve the new password.
I would then put a basic config into the device and save to ROM-D before reloading the latest firmware.
 :)
Logged
BT FTTC 80/20 Huawei Cab - Zyxel VMG8924-B10A

hushcoden

  • Reg Member
  • ***
  • Posts: 404
Re: VMG8924-B10A unbranded supervisor password
« Reply #107 on: January 24, 2019, 07:16:46 PM »

So, after a couple of hours I got there:

1) Rolled back to v.20, logged in as "admin" and retrieved the supervisor password with "dumpmdm"

2) Updated to v.21, "dumpmdm" still available once logged in as "admin" and supervisor password did not change  :police:

3) Updated to v.28,  "dumpmdm" not available once logged in as "admin" BUT supervisor password did not change  :angel:  and "dumpmdm" available once logged in as "supervisor"

Many thanks burakkucat and tubaman !
Logged

burakkucat

  • Global Moderator
  • Senior Kitizen
  • *
  • Posts: 34367
  • Over the Rainbow Bridge
    • The ELRepo Project
Re: VMG8924-B10A unbranded supervisor password
« Reply #108 on: January 24, 2019, 08:32:58 PM »

So, after a couple of hours I got there:

That's good to know.  :)

Quote
Many thanks burakkucat and tubaman !

You are welcome.
Logged
:cat:  100% Linux and, previously, Unix. Co-founder of the ELRepo Project.

Please consider making a donation to support the running of this site.

tubaman

  • Addicted Kitizen
  • *****
  • Posts: 8394
Re: VMG8924-B10A unbranded supervisor password
« Reply #109 on: January 24, 2019, 08:46:34 PM »

Good news!
 ;D
Logged
BT FTTC 80/20 Huawei Cab - Zyxel VMG8924-B10A

facboy

  • Just arrived
  • *
  • Posts: 5
Re: VMG8924-B10A unbranded supervisor password
« Reply #110 on: June 28, 2019, 02:25:58 AM »

for reference, i just used https://iam.tj/projects/zyxel/README.html to get the supervisor password on a VMG9024-B10A with 8924-B10A-AAKL24-jumboframes-oldtelnet-x6 firmware.

had to get a bit creative with firewall zones and netcat on my OpenWRT router as i am in bridged mode and so did not have network access from the Zyxel.
Logged

ktz392837

  • Reg Member
  • ***
  • Posts: 558
Re: VMG8924-B10A unbranded supervisor password
« Reply #111 on: June 28, 2019, 08:26:16 AM »



8924-B10A-AAKL24-jumboframes-oldtelnet-x6 firmware.
Do you happen to know where the message is that explains these firmwares and associated download link?  Thanks

Logged

johnson

  • Reg Member
  • ***
  • Posts: 787
Re: VMG8924-B10A unbranded supervisor password
« Reply #112 on: June 28, 2019, 09:09:46 AM »

Do you happen to know where the message is that explains these firmwares and associated download link?  Thanks

Here:
https://forum.kitz.co.uk/index.php/topic,21545.msg381478.html#msg381478

I cant edit the post but the x6 firmware is labelled as such in the dropbox link. Any questions please ask.
Logged

xlr8r

  • Member
  • **
  • Posts: 40
Re: VMG8924-B10A unbranded supervisor password
« Reply #113 on: January 09, 2020, 11:14:25 AM »

So, after a couple of hours I got there:

1) Rolled back to v.20, logged in as "admin" and retrieved the supervisor password with "dumpmdm"

2) Updated to v.21, "dumpmdm" still available once logged in as "admin" and supervisor password did not change  :police:

3) Updated to v.28,  "dumpmdm" not available once logged in as "admin" BUT supervisor password did not change  :angel:  and "dumpmdm" available once logged in as "supervisor"

Many thanks burakkucat and tubaman !

sadly, i followed your method and it did NOT work for me. i now have lost all supervisor access.

i only use this router for modem-bridge mode and it will be too much hassle to revert back to an older firmware to retrieve the supervisor password, only for it do do the same thing again after upgrading the firmware to .28.

i will just have to live with it as is now...  :(
Logged

xlr8r

  • Member
  • **
  • Posts: 40
Re: VMG8924-B10A unbranded supervisor password
« Reply #114 on: January 09, 2020, 11:16:54 AM »

Here:
https://forum.kitz.co.uk/index.php/topic,21545.msg381478.html#msg381478

I cant edit the post but the x6 firmware is labelled as such in the dropbox link. Any questions please ask.

sadly the link is broken or the OP has removed the firmwares from dropbox.

i would have liked to have tried on of them as i only use my 8324 in bridge mode (modem only).

if anyone still has these firmwares, please post new links. thanks
Logged

ktz392837

  • Reg Member
  • ***
  • Posts: 558
Re: VMG8924-B10A unbranded supervisor password
« Reply #115 on: January 09, 2020, 11:27:29 AM »

Logged

ktz392837

  • Reg Member
  • ***
  • Posts: 558
Re: VMG8924-B10A unbranded supervisor password
« Reply #116 on: January 09, 2020, 11:31:47 AM »

sadly, i followed your method and it did NOT work for me. i now have lost all supervisor access.

i will just have to live with it as is now...  :(

Same thing happened to me.  You can get the new supervisor password by looking at the csemu (or something very similar) file and decoding the base64.  Can't remember the specifics but if you can't find them or if no one else posts, reply and I will dig out the notes I made.
Logged

xlr8r

  • Member
  • **
  • Posts: 40
Re: VMG8924-B10A unbranded supervisor password
« Reply #117 on: January 09, 2020, 11:39:43 AM »

https://github.com/johnson442/custom-zyxel-firmware/releases

brilliant! many thanks

do u happen to know if i upgrade to one of these , it will allow supervisor password to be easily accessible from dumpmdm command ?

or are these just for these options ?;
jumbo - baby jumbo frames
tel - multiple telnet sessions
x1/6 - later adsl_phy.bin
stats - stats webserver
cmd - custom commands on boot

ALSO, since im already on .28 standard version firmware, could I just simply upgrade to the .28 custom firmware without having to do any factory resets or anything and will current config settings remain intact ? its just i am remotely connected to my home network from work and was going to attempt to upgrade the 8324 to the .28 custom firmware but dont want to lose remote connection for any longer than the router needs to reboot itself lol

« Last Edit: January 09, 2020, 12:46:52 PM by xlr8r »
Logged

xlr8r

  • Member
  • **
  • Posts: 40
Re: VMG8924-B10A unbranded supervisor password
« Reply #118 on: January 09, 2020, 11:42:27 AM »

Same thing happened to me.  You can get the new supervisor password by looking at the csemu (or something very similar) file and decoding the base64.  Can't remember the specifics but if you can't find them or if no one else posts, reply and I will dig out the notes I made.

yes that would be great if not too much bother, i would like to be able to retrieve the supervisor password again.

many thanks
Logged

ktz392837

  • Reg Member
  • ***
  • Posts: 558
Re: VMG8924-B10A unbranded supervisor password
« Reply #119 on: January 09, 2020, 02:37:12 PM »

The newer firmwares had the dump command removed so johnsons firmware will be the same as they are based on the official ones iirc.

For me I had to use hashcat on my 1312 to get the supervisor password and the csamu trick on the 8324.

For 8324 one of these should work (last one for me iirc):
Code: [Select]
cat /etc/passwd
cat /var/csamu
echo $(cat /etc/passwd)
echo $(cat /var/csamu)

Search Google for how to decode the base64 strings found in the files above.

I wouldn't risk a remote upgrade!

If you want more information on what each version of johnsons firmware provides use
https://github.com/johnson442/custom-zyxel-firmware/blob/master/README.md
Unless you know you need it iirc the v6 are NOT recommended I just went for the everything option
8x24-B10A-28-jumbo-tel-stats-cmd.bin
Now running a 1312 though
« Last Edit: January 09, 2020, 02:42:33 PM by ktz392837 »
Logged
Pages: 1 ... 6 7 [8] 9 10
 

anything