what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

3com-nmc-tch.txt

3com-nmc-tch.txt
Posted Aug 17, 1999

The software that 3com has developed for running the NMC (network management card) for the Total Control Hubs has hard-coded "adm" login that cannot be deleted, allowing easy unauthorized remote access.

tags | exploit, remote
SHA-256 | 99132980cd994df32ada10bbac98ce13a2e8f498558d0b838e9df5fe8d80b3e1

3com-nmc-tch.txt

Change Mirror Download
Date: Mon, 21 Dec 1998 11:23:57 -0800
From: Entropy <entropy@THEGRID.NET>
Reply-To: Bugtraq List <BUGTRAQ@netspace.org>
To: BUGTRAQ@netspace.org
Subject: Fwd: Re: 3com

The software that 3com has developed for running the NMC (network
management card) for the Total Control Hubs is a bit shady.
After uploading the software ( as one must do) YOU will notice a login
account called "adm" with no password.
Naturally no one wants the "adm" login there, so they delete it from the
configuration, and go on programming the box. Once the box has been
programmed and is ready to take calls, it is necessary to save all
settings, and hardware reset the box, at this point the box is fully
configured, and ready to
take calls. The problem is this, the "adm" login requiring no password, is
still there after the hardware reset!!! It cannot be deleted!
I have ran a trace route on over 37 ISP's, found there HD box's, and
have been able to get
into 21 of them through this security hole!
The admin that programmed the box has no reason to go back into the
configuration after doing the
hardware reset, he has already gone over and double checked his settings,
they all looked good, and hardware reset has gone into action as the last
step.., he has no clue that the "adm" he has deleted is still there, and
active.
In order to stop the "adm" login one can only dis-able the "adm"
login, not delete it....this is the only way to stop the login.

I have tested this on the current, and last 3 releases of software put out
by 3com for the NMC card. 3Com has been notified

I hope this helps.

Entr0py

----------------------------------------------------------------------------

Date: Mon, 21 Dec 1998 23:06:43 -0700
From: Eric Wanner <ericw@FUTUREONE.COM>
Reply-To: Bugtraq List <BUGTRAQ@netspace.org>
To: BUGTRAQ@netspace.org
Subject: Re: Fwd: Re: 3com

NMC card? The only card you can telnet to is the NAC (Network Access
Card, I believe). The bug appears to be present on this card.

--

Eric Wanner
Head Systems Administrator
FutureOne, Inc.
602-385-3379
http://home.futureone.com
EfNet: holobyte

----------------------------------------------------------------------------

Date: Mon, 21 Dec 1998 22:15:19 -0800
From: Eric Forcey <eforcey@PSNW.COM>
Reply-To: Bugtraq List <BUGTRAQ@netspace.org>
To: BUGTRAQ@netspace.org
Subject: Re: 3com

Actually it's not the NMC card, its the HiPer ARC card.

According to USR/3com personnel it is only affected in v4.1.x revisions
of the HARC code.

As posted, the fix is to disable the account.

Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close