Home page logo
/

pen-test logo Penetration Testing mailing list archives

SNMPv3 Authentication Bypass - CVE-2008-0960
From: inode <inode () mediaservice net>
Date: Thu, 12 Jun 2008 10:30:30 +0200

I just finished testing my latest code, it's a patch for Net-SNMP 5.4.1.1 that allow you to exploit the CVE-2008-0960 for bypass the HMAC validation on SNMP v3 (multiple vendor affected).

You can download it at:
http://lab.mediaservice.net/code.php#snmpv3

inode

--
Agazzini Maurizio                    @ Mediaservice.net S.R.L.
0xF574450C - 09C5 E9A5 E481 D70A 708E DC3B 690D 1A36 F574 450C

"C programmers never die. They are just cast into void."

http://mediaservice.net/disclaimer

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Top 5 Common Mistakes in Securing Web Applications Find out now! Get Webinar Recording and PPT Slides

www.cenzic.com/landing/securityfocus/hackinar
------------------------------------------------------------------------


  By Date           By Thread  

Current thread:
  • SNMPv3 Authentication Bypass - CVE-2008-0960 inode (Jun 12)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
AlienVault