Oval Definition:oval:org.mitre.oval:def:87
Revision Date:2008-02-28Version:43
Title:SNMPv1 Request Handling DoS and Privilege Escalation
Description:Vulnerabilities in the SNMPv1 request handling of a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via (1) GetRequest, (2) GetNextRequest, and (3) SetRequest messages, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that this candidate will be SPLIT into multiple candidates, one or more for each vendor. This and other SNMP-related candidates will be updated when more accurate information is available.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2002-0013
Platform(s):Microsoft Windows NT
Product(s):Simple Network Management Protocol (SNMP)
Definition Synopsis
  • Software section
  • Microsoft Windows NT is installed
  • AND NOT this is an NT Terminal Server
  • AND the version of snmp.exe is less than 4.0.1381.7134
  • AND NOT Patch Q314147 Installed
  • AND Configuration section
  • the SNMP service is enabled
  • BACK