Search:     Advanced search
server monitoring

Compaq Web Based Management Agent Proxy Vulnerability

Article ID: 10963
Last updated: 27 Jan, 2009
Views: 418
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

Compaq Web Based Management Agent Proxy Vulnerability

This script is Copyright (C) 2002 Digital Defense Inc.

FamilyGeneral
Plugin ID10963
Bugtraq ID
CVE IDCVE-2001-0374

Description:


This host is running the Compaq Web Management
Agent. This service can be used as an HTTP
proxy. An attacker can use this to bypass
firewall rules or hide the source of web-based
attacks.

Solution: Due to the information leak associated
with this service, we recommend that you disable
the Compaq Management Agent or filter access to
TCP ports 2301 and 280.

If this service is required, installing the
appropriate upgrade from Compaq will fix this
issue. The software update for your operating
system and hardware can be found via Compaqs
support download page:
http://www.compaq.com/support/files/server/us/index.html

For more information, please see the vendor advisory at:
http://www.compaq.com/products/servers/management/SSRT0758.html

Risk factor : Medium
This article was:   Helpful | Not Helpful
Prev   Next
SSL Certificate     SSL Certificate Expiry