Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Leak of SNMP write password via SNMP read community in NETGEAR WG102 - Prosafe 802.11g Access Point Jan 09 2009 08:56AM
mad-vaittes ida ing tu-bs de (1 replies)
Re: Leak of SNMP write password via SNMP read community in NETGEARWG102 - Prosafe 802.11g Access Point Jan 09 2009 04:52PM
Simon Richter (Simon Richter hogyros de) (1 replies)
Hi,

> WG102 offers the the typical SNMP write & SNMP read community password 'protection'.

SNMP communities are a safety, not a security measure. I know of very few
SNMP implementations that have protections against brute force or
dictionary attacks.

> Proposed fixes:
> do not enable SNMP at all. vendor fix required.

This AP can use VLAN tagging to separate management traffic from user data,
which is generally a good idea in any environment.

Simon

[ reply ]
Re: Leak of SNMP write password via SNMP read community in NETGEAR WG102 - Prosafe 802.11g Access Point Jan 09 2009 08:25PM
Steve Shockley (steve shockley shockley net) (1 replies)







 

Privacy Statement
Copyright 2008, SecurityFocus