Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.103494
Kategorie:Gain a shell remotely
Titel:Multiple F5 Networks Products - SSH vulnerability CVE-2012-1493
Zusammenfassung:Multiple F5 Networks products are prone to an SSH vulnerability.
Beschreibung:Summary:
Multiple F5 Networks products are prone to an SSH vulnerability.

Vulnerability Insight:
A platform-specific remote root access vulnerability has been
discovered that may allow a remote user to gain privileged access to affected systems using SSH

The vulnerability is caused by a publicly known SSH private key for the root user which is present
on all vulnerable appliances.

Affected Software/OS:
The following platforms are affected by this issue:

VIPRION B2100, B4100, and B4200

BIG-IP 520, 540, 1000, 2000, 2400, 5000, 5100, 1600, 3600, 3900, 6900, 8900, 8950, 11000, and 11050

BIG-IP Virtual Edition

Enterprise Manager 3000 and 4000

Solution:
Updates are available. See the References for more information.

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:N/A:N

Querverweis: BugTraq ID: 53897
Common Vulnerability Exposure (CVE) ID: CVE-2012-1493
http://www.theregister.co.uk/2012/06/13/f5_kit_metasploit_exploit/
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/ssh/f5_bigip_known_privkey.rb
https://www.trustmatta.com/advisories/MATTA-2012-002.txt
CopyrightCopyright (C) 2012 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.