ZOT P100s PrintServer Default SNMP Community String Vulnerability
BID:4155
Info
ZOT P100s PrintServer Default SNMP Community String Vulnerability
| Bugtraq ID: | 4155 |
| Class: | Design Error |
| CVE: |
CVE-2002-0305 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 21 2002 12:00AM |
| Updated: | Jul 11 2009 10:56AM |
| Credit: | This issue was submitted to BugTraq on February 21st, 2002 by Clinton Smith <[email protected]>. |
| Vulnerable: |
Zero One Tech P100s PrintServer 5.31.13 E |
| Not Vulnerable: | |
Discussion
ZOT P100s PrintServer Default SNMP Community String Vulnerability
ZOT (Zero One Tech) P100s PrintServer is a hardware, multi-protocol print server product.
ZOT P100s PrintServer has a default public SNMP community read string. Furthermore, this string is reportedly still accessible via a SNMP client even if the user has disabled SNMP or changed the value from the default of "public".
This issue may cause information about the configuration of the device to be leaked to a remote attacker. Information about the network may also be disclosed in this manner.
An attacker may use this information to mount further attacks against the device and/or network.
ZOT (Zero One Tech) P100s PrintServer is a hardware, multi-protocol print server product.
ZOT P100s PrintServer has a default public SNMP community read string. Furthermore, this string is reportedly still accessible via a SNMP client even if the user has disabled SNMP or changed the value from the default of "public".
This issue may cause information about the configuration of the device to be leaked to a remote attacker. Information about the network may also be disclosed in this manner.
An attacker may use this information to mount further attacks against the device and/or network.
Exploit / POC
ZOT P100s PrintServer Default SNMP Community String Vulnerability
This issue may be exploited using a SNMP client.
This issue may be exploited using a SNMP client.