[24264] in bugtraq
SNMP Enabled on Dell Servers
daemon@ATHENA.MIT.EDU (Will Backman)
Wed Feb 13 20:55:30 2002
Message-ID: <3C6AF38E.7020406@ceimaine.org>
Date: Wed, 13 Feb 2002 18:15:26 -0500
From: Will Backman <whb@ceimaine.org>
MIME-Version: 1.0
To: bugtraq@securityfocus.com
Content-Type: text/plain; charset=us-ascii; format=flowed
Content-Transfer-Encoding: 7bit
While Microsoft says that SNMP is NOT enabled on any version of Windows,
my new Dell PowerEdge with Win2000SP2 came with it installed and
running. Besides the current exploits, it uses the stupid defaults that
NT4.0 has, which is a community string of PUBLIC with READ-CREATE.
I figure the new holes in SNMP will case a lot of scanning for the
service, and there may be a lot of folks who do not realize that the
vendor might have installed it and turned it on in the OEM media.
Will Backman
Network Administrator