国产探花免费观看_亚洲丰满少妇自慰呻吟_97日韩有码在线_资源在线日韩欧美_一区二区精品毛片,辰东完美世界有声小说,欢乐颂第一季,yy玄幻小说排行榜完本

首頁 > 學院 > 網絡通信 > 正文

3com,bay交換機、路由器 密碼恢復

2019-11-05 00:41:56
字體:
來源:轉載
供稿:網友

  3COM用一種很希奇的方式來維護他們售出的設備,那就是后門密碼,任何的下列密碼都是最高權限,可以自由設置設備。
  
   CoreBuilder 6000/2500 - username: debug passWord: synnet
   CoreBuilder 3500 (Version 1.0) - username: debug password: synnet
   CoreBuilder 7000 - username: tech password: tech
   SuperStack II Switch 2200 - username: debug password: synnet
   SuperStack II Switch 2700 - username: tech password: tech
   Bay Networks似乎感覺3com的這種方式很好,于是在他們350(也許還有其他型號)的產品里也加進了后門密碼 "NetICs" ,類似情況沒有在accelar產品系列里獲得報道。
  
   除了交換機之外,3com在訪問服務器里也加入了默認密碼,用戶名是"adm",密碼為空。
  
   在極端的情況下,這可以作為恢復密碼的一個手段。
  
   叉開一些話題,我在使用Nortel(Bay)的交換機時,不小心發現幾乎Bay全部產品都有隱藏模式, 350/450上是按一下 ctrl-H 或者是退格鍵,可以進入Hidden Menu。
   在Accelar 1100/1200 上,輸入 sh h ,你會看到一些隱藏命令的列表,其中有個
   PRivilige命令,必須有rwa的用戶登錄以后執行,執行以后,可以進入一個特權模式,
   提示符也變為 * ,然后可以輸入"shell",進入一個非凡的環境,看help,是些調試功能,
   呵呵,很有趣,希望有人能夠繼續挖掘下去。http://go1.163.com/~watchsea/otherswi.htm
  3Com Security Advisory for CoreBuilder and SuperStack II customers
   3Com is issuing a security advisory affecting select CoreBuilder LAN switches and SuperStack II Switch prodUCts. This is in response to the widespread distribution of special logins intended for service and recovery procedures issued only by 3Com''s Customer Service Organization under conditions of extreme emergency, such as in the event of a customer losing passwords.
  
   Due to this disclosure some 3Com switching products may be vulnerable to security breaches caused by unauthorized access via special logins.
  
   To address these issues, customers should immediately log in to their switches via the following usernames and passwords. They should then proceed to change the password via the appropriate Password parameter to prevent unauthorized access.
  
  
   CoreBuilder 6000/2500 - username: debug password: synnet
   CoreBuilder 3500 (Version 1.0) - username: debug password: synnet
   CoreBuilder 7000 - username: tech password: tech
   SuperStack II Switch 2200 - username: debug password: synnet
   SuperStack II Switch 2700 - username: tech password: tech
   The CoreBuilder 3500 (Version 1.1), SuperStack II Switch 3900 and 9300 also have these mechanisms, but the special login password is changed to match the admin level password when the admin level password is changed.
  
   Customers should also immediately change the SNMP Community string from the default to a proprietary and confidential identifier known only to authorized network management staff. This is due to the fact that the admin password is available through a specific proprietary MIB variable when accessed through the read/write SNMP community string.
  
   This issue applies only to the CoreBuilder 2500/6000/3500 and SuperStack II Switch 2200/3900/9300.
  
   Fixed versions of software for CoreBuilder 2500/6000/3500 and SuperStack II Switch 2200/3900/9300 are available below.
  
   General administration of these systems should still be performed through the normal documented usernames and passwords. Other facilities found under these special logins are for diagnostic purposes and should only be used under specific guidance from 3Com''s Customer Service Organization.


發表評論 共有條評論
用戶名: 密碼:
驗證碼: 匿名發表
主站蜘蛛池模板: 手机| 广南县| 基隆市| 柯坪县| 龙里县| 上犹县| 黄浦区| 分宜县| 静宁县| 嘉定区| 无棣县| 东安县| 遵义市| 高雄市| 保山市| 都匀市| 涡阳县| 榆社县| 南木林县| 临汾市| 农安县| 兴文县| 陆河县| 岳西县| 文山县| 武安市| 聊城市| 辉县市| 宁远县| 塔河县| 荥经县| 杂多县| 南宁市| 北碚区| 茂名市| 旌德县| 靖远县| 通河县| 临澧县| 邢台市| 三都|