3com bay交换机 路由器的另类默认帐号密码信息来源:牛哥3COM用一种很奇怪的方式来维护他们售出的设备,任何的下列密码都是更高权限,可以自由设置设备。 CoreBuilder 6000/2500 - username: debug password: synnet CoreBuilder 3500 (Version 1.0) - username: debug password: synnet CoreBuilder 7000 - username: tech password: tech SuperStack II Switch 2200 - username: debug password: synnet SuperStack II Switch 2700 - username: tech password: tech Bay Networks似乎感觉3com的这种方式很好,于是在他们350(也许还有其他型号)的产品里也加进了后门密码 "NetICs" ,类似情况没有在accelar产品系列里获得报道。 除了交换机之外,3com在访问服务器里也加入了默认密码,用户名是"adm",密码为空。 在极端的情况下,这可以作为恢复密码的一个手段。 在使用Nortel(Bay)的交换机时,不小心发现几乎Bay全部产品都有隐藏模式, 350/450上是按一下 ctrl-H 或者是退格键,可以进入Hidden Menu。 在Accelar 1100/1200 上,输入 sh h ,你会看到一些隐藏命令的列表,其中有个 privilige命令,必须有rwa的用户登录以后执行,执行以后,可以进入一个特权模式, 提示符也变为 * ,然后可以输入"shell",进入一个特别的环境,看help,是些调试功能, 呵呵,很有趣,希望有人能够继续挖掘下去。http://XXX.com/~watchsea/otherswi.htm 3Com Security Advisory for CoreBuilder and SuperStack II customers 3Com is issuing a security advisory affecting select CoreBuilder LAN switches and SuperStack II Switch products. This is in response to the widespread distribution of special logins intended for service and recovery procedures issued only by 3Com''s Customer Service Organization under conditions of extreme emergency, such as in the event of a customer losing passwords. Due to this disclosure some 3Com switching products may be vulnerable to security breaches caused by unauthorized access via special logins. To address these issues, customers should immediately log in to their switches via the following usernames and passwords. They should then proceed to change the password via the appropriate Password parameter to prevent unauthorized access. CoreBuilder 6000/2500 - username: debug password: synnet CoreBuilder 3500 (Version 1.0) - username: debug password: synnet CoreBuilder 7000 - username: tech password: tech SuperStack II Switch 2200 - username: debug password: synnet SuperStack II Switch 2700 - username: tech password: tech The CoreBuilder 3500 (Version 1.1), SuperStack II Switch 3900 and 9300 also have these mechani *** s, but the special login password is changed to match the admin level password when the admin level password is changed. Customers should also immediately change the SNMP Community string from the default to a proprietary and confidential identifier known only to authorized network management staff. This is due to the fact that the admin password is available through a specific proprietary MIB variable when accessed through the read/write SNMP community string. This issue applies only to the CoreBuilder 2500/6000/3500 and SuperStack II Switch 2200/3900/9300. Fixed versions of software for CoreBuilder 2500/6000/3500 and SuperStack II Switch 2200/39 |
立冬节气马上就要到了,立冬一过,我们就正式进入冬天了,冬天是一个寒冷的季节,所以我们要格外注意防寒保暖,在立冬节气时,大家也可以给家人朋友、领导客户发送一条温馨的短信,接下来大家就和小编一起了解一下立...
谈恋爱会从热情到慢慢变为平平淡淡,有些人说,男孩子处对象久了便会腻,实际上这并不一定,主要是需看大家两交往的全过程及其在一起原因是什么,那麼,男孩子处对象逐渐腻了的主要表现有什么?下边我而言说。...
本文目录一览: 1、手机APP是什么意思?有哪些具体用处 2、手机app是什么意思? 3、手机APP是什么意思? 4、手机APP是啥意思 手机APP是什么意思?有哪些具体用处 手机app...
11日,记者从浙江省江山市城北派出所获悉,去年3月起,远在福建、江西的刘某、小芳(化名)、燕子(化名)为谋取利益非法买卖2万余条公民个人信息,共获利50余万元。日前,该所民警联合网警辗转福建江西等地,...
夏季阳光强烈,紫外线过敏怎么办?你该如何hold住你的皮肤 夏季已至,阳光强烈,这对于肌肤敏感的小伙伴来说,需要加强注意,如果护理不当,很容易引起紫外线过敏,为此今天穆杰老师给大家说说如何才能达...
2019年假期安排時间,包含邻近的元旦节过年放假、清明节放假、端午节放假这些2019年的一些法定节假日。无需心急也无需希望,如今我立刻为您公布2019年全年度的假期安排時间。我把2018年全部假期...