Iomega NAS A300U CIFS/SMB Mounts Plaintext Authentication Vulnerability
BID:6093
Info
Iomega NAS A300U CIFS/SMB Mounts Plaintext Authentication Vulnerability
| Bugtraq ID: | 6093 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 01 2002 12:00AM |
| Updated: | Nov 01 2002 12:00AM |
| Credit: | Discovery of this issue is credited to "Keith R. Watson" <[email protected]>. |
| Vulnerable: |
Iomega NAS A300U |
| Not Vulnerable: | |
Discussion
Iomega NAS A300U CIFS/SMB Mounts Plaintext Authentication Vulnerability
Iomega NAS A300U devices are reported to use LANMAN authentication for access to CIFS/SMB mounts. LANMAN authentication credentials are sent across the network in plaintext and may be intercepted by attackers with the ability to sniff network traffic. It has also been reported that this may allow session hijacking attacks to occur.
This issue was reported for Iomega NAS A300U on Unix platforms. Other platforms and Iomega devices may also be affected.
Iomega NAS A300U devices are reported to use LANMAN authentication for access to CIFS/SMB mounts. LANMAN authentication credentials are sent across the network in plaintext and may be intercepted by attackers with the ability to sniff network traffic. It has also been reported that this may allow session hijacking attacks to occur.
This issue was reported for Iomega NAS A300U on Unix platforms. Other platforms and Iomega devices may also be affected.
Exploit / POC
Iomega NAS A300U CIFS/SMB Mounts Plaintext Authentication Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
Iomega NAS A300U CIFS/SMB Mounts Plaintext Authentication Vulnerability
Solution:
It has been reported that the vendor has confirmed the issue and that solutions which address the problem are pending.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It has been reported that the vendor has confirmed the issue and that solutions which address the problem are pending.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Iomega NAS A300U CIFS/SMB Mounts Plaintext Authentication Vulnerability
References:
References:
- Iomega Homepage (Iomega)
- Iomega NAS A300U security and inter-operability issues ("Keith R. Watson"
)