Search:     Advanced search
server monitoring

Default Password (forgot) for super Account

Article ID: 17292
Last updated: 27 Jan, 2009
Views: 412
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

Default Password (forgot) for super Account

This script is Copyright (C) 2005-2008 Tenable Network Security, Inc.

FamilyDefault Unix Accounts
Plugin ID17292
Bugtraq ID212
CVE IDCVE-1999-1420
CVE-1999-1421

Description:

Synopsis :

The remote system/switch can be accessed using default credentials
with root level privileges.

Description :

The account super on the remote host has the password forgot. An
attacker may use it to gain further privileges on this system.

See also :

http://archives.neohapsis.com/archives/bugtraq/1998_3/0184.html

Solution :

Set a password for this account or disable it.

Risk factor :

Critical / CVSS Base Score : 10.0
(CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C)
This article was:   Helpful | Not Helpful
Prev   Next
Unpassworded demos Account     Default Password (swift) for swift Account