RE: APC 9606 SmartSlot Web/SNMP management card "backdoor" - Telnet can't be disabled.

From: Miskell, Craig (Craig.Miskell_at_agresearch.co.nz)
Date: 02/19/04

  • Next message: Keith Clifton: "Re: APC 9606 SmartSlot Web/SNMP management card "backdoor" - Telnet can't be disabled."
    Date: Fri, 20 Feb 2004 10:27:31 +1300
    To: <bugtraq@securityfocus.com>
    
    

    The device appears to need a "restart for this change to take effect"
    (to quote a phrase from another OS). We have a 9604 (which,
    incidentally, appears to have the same default password, although the
    details once logged in are different), and telnet wasn't disabled until
    I had logged in via telnet and logged out again. The device warmstarted
    when I logged out, and telnet was subsequently truly disabled.

    HTH,

    Craig Miskell

    > -----Original Message-----
    > From: David Monosov [mailto:david.monosov@futureinquestion.net]
    > Sent: Friday, 20 February 2004 4:14 a.m.
    > To: bugtraq@securityfocus.com
    > Subject: APC 9606 SmartSlot Web/SNMP management card
    > "backdoor" - Telnet can't be disabled.
    >
    >
    > To your attention: This comes from limited experience with
    > one version of
    > the 9606 firmware (v3.0.3) on MasterSwitch 9xxx series,
    > tested across many
    > of the devices:
    >
    > Although provided an option to disable telnet
    > administratively via the Web
    > interface as well as the Telnet interface itself - telnet does *NOT*
    > actually gets disabled.
    >
    > It disables itself for a matter of approx +/- 20 seconds, and
    > comes back as
    > if nothing ever happened. Repeating attempts to disable
    > telnet access are
    > futile. The only effective method of preventing possible
    > exploitation seems
    > to be filtering port 23 on the network level. This seems to be another
    > firmware issue.
    >
    > Please check your APC's using 9606, your sense of security
    > from disabling
    > telnet might be false :(
    >
    > ---
    > David 'wEEkAY' Monosov
    > david dot monosov at futureinquestion dot net
    >
    >
    >
    >
    >
    >
    >
    =======================================================================
    Attention: The information contained in this message and/or attachments
    from AgResearch Limited is intended only for the persons or entities
    to which it is addressed and may contain confidential and/or privileged
    material. Any review, retransmission, dissemination or other use of, or
    taking of any action in reliance upon, this information by persons or
    entities other than the intended recipients is prohibited by AgResearch
    Limited. If you have received this message in error, please notify the
    sender immediately.
    =======================================================================


  • Next message: Keith Clifton: "Re: APC 9606 SmartSlot Web/SNMP management card "backdoor" - Telnet can't be disabled."

    Relevant Pages

    • Re: Disabling telnet on Linux iptables firewall
      ... iptables) and I tell it to disallow telnet. ... the 'telnet' client takes a port number as an optional parameter, ... Disabling them is likely the better choice - use the 'which' command to ... difficult for FC2, but you should be aware of your responsibility. ...
      (comp.os.linux.security)
    • Re: Mailbox Issue - Bad messages?
      ... > hosting company about this issue. ... In order to get our mail, we have to open a telnet ... > message during the session, ... > We've tried disabling Antivirus, firewall, etc. ...
      (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
    • Re: newbie firewall
      ... Now disabling the firewall in guarddog ... You don't ever want to use telnet, ... It also has RSA authentication ...
      (comp.os.linux.security)
    • Re: Irix 6.5 > what Processes are optional? (how to maximize performance)
      ... After disabling the Services and restarting them, I was kinda shocked since I could not ... I found the Telnet service up and running on all of them, and (for the first time in my ... (and if I could use it to remote-control the remaining Windoze boxes as well, ...
      (comp.sys.sgi.misc)
    • Re: Figuring out where my e-mail is hanging when sending to a specific company
      ... I did a telnet but it failed to connect but I know they are able to send ... and receive to other clients ... >> This is an automatically generated Delivery Status Notification. ... >> Your message did not reach some or all of the intended recipients. ...
      (microsoft.public.exchange.setup)