OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Cisco Catalyst switches
From: Blue Boar (BlueBoarTHIEVCO.COM)
Date: Wed Jun 14 2000 - 01:39:54 CDT


Too true. I will take this opportunity to remind folks that if I have
your SNMP write community, I 0wn you. Some network vendors (not Cisco
so far as I know) are dumb enough that if I have the read community,
I also 0wn you, because they make the write string available via the
read string. Duh.

Now that's enough of the smart-ass replies. :)

                                        BB

suidSUID.KG wrote:
>
> > > : It would be interesting if there was a vulnerability that allowed you to
> > > : break the VLAN definitions.. I know many companies that practically run
> > > : their entire networks together into several Catalysts via VLANS :)
> > Secure
>
> > What about redefining the VLANs in the config? Of course that would
> > require getting control of the switch.
>
> WARNING: Users who have administritive access to your systems may perform
> administritive functions!!!!
>
> :P~~
>
> suid