Bugtraq mailing list archives

Cisco 2509/2511


From: appie () CASTEL NET (Albert Siersema)
Date: Mon, 24 Mar 1997 18:06:18 -0100


This is an old one, but I keep seeing comfigurations (also posted to
UseNet) where people forget to do a:

transport input none

on their 'line 1 16' (or whatever) config.
If you use the default values ('telnet' I think) and you have no filters
(stupid idea too) on your Cisco then someone is able to use ports 2001 and
up to connect to one of the devices attached to it. If this is a modem
that same person can type any AT command he/she wants. Go figure..



Current thread: