^ or printscreen+paste into ms paint
the answer i got from a forum (linuxquestions.org) regarding this is(i am not an expert with networking for sure!):
Most routers have an option where remote management can be disabled. Or in other words, you can only connect to the configuration interface from the internet network, not the WAN side. You would definitely want to make sure remote management is not active to protect yourself.
Beyond that, the situation you are talking about is certainly possible. Assuming the router by default enables remote access (or worse, it is always on and is not an option), then it would be trivial to crack a weak password on it. If it is using default passwords, then it wouldn't even require effort.
As for you being able to connect to the router, that is expected. The firewall rules only apply to the external interface (your Internet connection) machines on the local network are generally allowed complete access.
^^ so bsnl dataone/or whatever service users pls have ur passwd changed.even that can be cracked!

so someone knowledgeable can help how to disable this behaviour from router.
I hope if u disable virtual server(not tested) it helps.
Quote:
|
Virtual Server Virtual Server is used to allow Internet users access to LAN services.
|
^^ from 192.168.1.1
BSNL not yet knows that their users BB accounts can be hacked.