SNMP agents reveal information about network routing

Risk Level: Low risk vulnerability  Low

Check or Attack Name: SNMPShowRoutes

Platforms: SNMP
Description:

Many Simple Network Management Protocol (SNMP) agents support the MIB-II standard ipRouteTable. This table contains the IP address, its network mask, the prototype, and the gateway of each route supported by the networked device. This information can be used to learn more about the connections to and from the networked device.

Remedy:

Set the community string to a value that is not easily guessed. Use uppercase, lowercase, and numeric characters. If the agent supports View Access Control, limit the views that the agent may reveal.

References:

Cisco Systems Product Information, Simple Network Management Protocol (SNMP), http://www.cisco.com/warp/public/535/3.html


X-Force Logo
Know Your Risks