what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

iXsecurity.20001107.compaq-wbm.a

iXsecurity.20001107.compaq-wbm.a
Posted Nov 14, 2000
Authored by Ian Vitek | Site ixsecurity.com

iXsecurity Security Vulnerability Report - The default installation of Compaq Web-Based Management on a Netware server reveals sensitive system files to anyone who can access TCP port 2301. Allows remote users to read the remote console password. Software version 2.28 verified vulnerable. Compaq advisory available here.

tags | exploit, remote, web, tcp
SHA-256 | 992ae643310081a28265d7edbe6fcf3cd675ed92732e4ecbee1271c805355517

iXsecurity.20001107.compaq-wbm.a

Change Mirror Download
iXsecurity Security Vulnerability Report
No: iXsecurity.20001107.compaq-wbm.a
====================================

Vulnerability Summary
---------------------

Problem: The default installation of Compaq Web-Based
Management on a Netware server reveals
sensitive system files

Threat: Anyone that has access to port 2301 on a
Netware server can read the system
password (Remote Console password)

Platform: Compaq Web-Based Management on Netware
(Software version 2.28 verified)

Solution: Disable the Web Agent

Vulnerability Description
-------------------------
http://netware.server.with.CWBM:2301/survey is
accessible for everyone by default and contains
sensitive system files:
SYS:\SYSTEM\AUTOEXEC.NCF
SYS:\ETC\NETINFO.CFG.
The system password (Remote Console password)
and other passwords (SNMP ControlCommunity)
may be in clear text in any of these files.

Solution
--------
Compaq recommend that you disable the web agent
until a resolution has been provided.

Additional Information
----------------------
Many administrators install Compaq Web-Based Management
by default when they are installing Netware on a Compaq
machine. Web-Based Management listens on port 2301 and
anonymous access is allowed by default. iXsecurity have
to point out that none of our customers have changed
any Compaq user password until the first audit report
arrived.
Some Compaq installations have ports 49400 and 49401 open
too. These ports are not verified.

Vendor response
---------------
Mr. Vitek,

This is a known issue with an advisory available on the Compaq website as
indicated below:

http://www5.compaq.com/products/servers/management/security.html

Until a resolution has been provided, it would be recommended that you
disable the web agents as indicated in that advisory.

Thank You,
Compaq eServices
TRACKING NUMBER: A00000367277-00001144068
---------------

//Ian Vitek
mailto:ian.vitek@ixsecurity.com

-------------------------------
iXsecurity (former Infosec) is a Swedish and United
Kingdom based tigerteam that have worked with computer-
related security since 1982 and done technical security
audits (pentests) since 1996. iXsecurity is now searching
for co-workers in Sweden and UK.
Call Stafferod for more information
tel: +46-8-6621070
mailto:christer.stafferod@ixsecurity.com
Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    16 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close