[33825] in bugtraq
Re: APC 9606 SmartSlot Web/SNMP management card "backdoor"
daemon@ATHENA.MIT.EDU (Charles R. Anderson)
Thu Feb 19 12:25:27 2004
Date: Wed, 18 Feb 2004 18:08:11 -0500
From: "Charles R. Anderson" <cra@WPI.EDU>
To: bugtraq@securityfocus.com
Message-ID: <20040218230811.GN26418@angus.ind.WPI.EDU>
Mail-Followup-To: bugtraq@securityfocus.com
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <5.1.1.5.0.20040218174231.01d11088@mail.varberg.se>
The latest firmware which fixes this vulnerability for v1 hardware
(AP9606) is AOS v3.2.6.b and for v2 hardware (AP9616) is AOS v2.1.2.a.
You can find it on the APC site. You may have to go digging for it
though. Note that the upgrade to AOS v2.1.2.a requires first
upgrading to AOS v2.0.1 or you will have problems.