Solaris Telnet Authentication Bypass

| | Comments (0) | TrackBacks (0)

The SANS Internet Storm Center diary has an entry a telnet authentication bypass vulnerability in Solaris 10 and 11. They don't mention any useful details, but if you're the type who prefers to see for yourself, you might check out a place that likes to fully disclose this type of thing.

I found we only have one Solaris 10 server running telnet. Its one of the Unix administrator's desktops. You can only access root from the console, but I was able to get in using the 'adm' account. Good times, good times.

Categories

0 TrackBacks

Listed below are links to blogs that reference this entry: Solaris Telnet Authentication Bypass.

TrackBack URL for this entry: http://www.infosecblog.org/mt-tb20071121.pl/454

Leave a comment

Powered by Ajax Comments

About this Entry

This page contains a single entry by Roger published on February 11, 2007 9:48 PM.

Symantec IM Manager Upgrade was the previous entry in this blog.

RSA Conference Wireless is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Add to Google
Please contact me by leaving a comment where appropriate. Otherwise, you can click here to reveal an email address for me.
Got Backups? Get Safe Online Remember Rick Rescorla Powered by Movable Type 4.2-en