Oval Definition:oval:org.mitre.oval:def:161
Revision Date:2008-02-28Version:43
Title:Windows NT SNMPv1 Trap Handling DoS and Privilege Escalation
Description:Vulnerabilities in a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via SNMPv1 trap handling, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that this candidate will be SPLIT into multiple candidates, one or more for each vendor. This and other SNMP-related candidates will be updated when more accurate information is available.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2002-0012
Platform(s):Microsoft Windows NT
Product(s):Simple Network Management Protocol (SNMP)
Definition Synopsis
  • Software section
  • Microsoft Windows NT is installed
  • AND NOT this is an NT Terminal Server
  • AND the version of snmp.exe is less than 4.0.1381.7134
  • AND NOT Patch Q314147 Installed
  • AND Configuration section
  • the SNMP service is enabled
  • BACK