[nsp-sec] NET-SNMP/UCB-SNMP SNMP Version 3 AuthenticationVulnerabilities

Smith, Donald Donald.Smith at qwest.com
Tue Jun 10 13:54:10 EDT 2008


This affects more then just Cisco.
It is based on the net-smnp/ucb-snmp but you may find that a LOT of your
network element vendors are affected.

http://www.kb.cert.org/vuls/id/878044 
US-CERT: Vulnerability Note VU#878044 "SNMPv3 authentication bypass"



Security through obscurity WORKS against some worms and ssh attacks:)
Donald.Smith at qwest.com giac 


This communication is the property of Qwest and may contain confidential or
privileged information. Unauthorized use of this communication is strictly 
prohibited and may be unlawful.  If you have received this communication 
in error, please immediately notify the sender by reply e-mail and destroy 
all copies of the communication and any attachments.



More information about the nsp-security mailing list