In association with heise online

15 July 2010, 14:27

Cisco switches with SNMP vulnerability

Cisco Logo A firmware flaw in Cisco's Industrial Ethernet 3000 switches causes the community strings chosen by the admin to be overwritten after every reboot. This allows attackers to read and edit the configuration parameters in a local network via the "public" and "private" standard strings – without further access restrictions. By default, SNMP is disabled on the devices.

Firmware versions 12.2 from 12.2(52)SE are affected. Cisco offers a workaround which initially removes the standard strings immediately and, as a second step, removes them from the configuration after every system start. The vendor says that firmware version 12.2(55)SE, in which the flaw has been fixed, will be released in August.

(crve)

  • Share this article
  • Twitter
  • Facebook
  • digg this
  • submit to slashdot
  • post to delicious
  • StumbleUpon
  • submit to reddit







The H open source

The H Security

The H Internet Toolkit