HP TCP/IP Services for OpenVMS User Enumeration Weakness and Security Bypass Vulnerabilities
BID:24751
Info
HP TCP/IP Services for OpenVMS User Enumeration Weakness and Security Bypass Vulnerabilities
| Bugtraq ID: | 24751 |
| Class: | Design Error |
| CVE: |
CVE-2007-3730 CVE-2007-3729 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 03 2007 12:00AM |
| Updated: | Jul 05 2016 10:00PM |
| Credit: | JF Mezei is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
HP TCP/IP Service 5.6 HP OpenVMS 7.3 -2 Alpha HP OpenVMS 8.3.Alpha HP OpenVMS 8.3 Integrity HP OpenVMS 8.2.Alpha HP OpenVMS 8.2-1 Integrity |
| Not Vulnerable: | |
Discussion
HP TCP/IP Services for OpenVMS User Enumeration Weakness and Security Bypass Vulnerabilities
HP TCP/IP Services for OpenVMS is prone to a user-enumeration weakness and a security-bypass vulnerability.
An attacker can exploit these issues to enumerate valid usernames and to launch brute-force attacks.
These issues affect the POP3 service included in TCP/IP 5.6 for OpenVMS; other versions may also be affected. The POP3 service is not enabled by default.
HP TCP/IP Services for OpenVMS is prone to a user-enumeration weakness and a security-bypass vulnerability.
An attacker can exploit these issues to enumerate valid usernames and to launch brute-force attacks.
These issues affect the POP3 service included in TCP/IP 5.6 for OpenVMS; other versions may also be affected. The POP3 service is not enabled by default.
Exploit / POC
HP TCP/IP Services for OpenVMS User Enumeration Weakness and Security Bypass Vulnerabilities
The attacker can exploit the username-enumeration weakness by using a dictionary-style attack.
The attacker can exploit the security-bypass vulnerability by using brute-force techniques.
The attacker can exploit the username-enumeration weakness by using a dictionary-style attack.
The attacker can exploit the security-bypass vulnerability by using brute-force techniques.
Solution / Fix
HP TCP/IP Services for OpenVMS User Enumeration Weakness and Security Bypass Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
HP TCP/IP Services for OpenVMS User Enumeration Weakness and Security Bypass Vulnerabilities
References:
References:
- VMS security vulnerability (POP server) (JF Mezei)
- OpenVMS Home Page (HP)