Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

HTTP:UNIX-FILE:ETC-PASSWD

Severity

Minor

Recommended

No

Category

HTTP

Keywords

Unix File /etc/passwd Probe

Release Date

2003/04/22

Update Number

1213

Supported Platforms

di-5.3+, idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

HTTP: Unix File /etc/passwd Probe


This signature detects attempts to access the main password file. If the server does not use shadowed passwords, attackers can compromise user passwords through brute force or add themselves to the system.

Extended Description

Successful exploitation of the vulnerability could enable a remote attacker to gain a user list to be used in a brute force attack.

References

  • CVE: CVE-2014-5115
  • CVE: CVE-2010-1711
  • URL: https://www.exploit-db.com/exploits/15913
  • URL: https://www.exploit-db.com/exploits/14647
  • URL: https://www.exploit-db.com/exploits/12260

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out