Penetration Testing mailing list archives

RE: SNMP write permissions in "Windows 2003"


From: "Duncan McAlynn" <duncan () mcalynn com>
Date: Thu, 19 Oct 2006 05:54:19 -0500

Sparky,

This is from the MSDN library and has some 'deep tissue' content on the SNMP
service in Windows Server 2003. Perhaps the items related to the SNMP and
WinSNMP APIs would assist you with what you're trying to accomplish.

http://technet2.microsoft.com/WindowsServer/en/library/bf555774-2d63-4e96-b4
32-c4b7bcac6b531033.mspx

Duncan

-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On
Behalf Of 09sparky () gmail com
Sent: Wednesday, October 18, 2006 9:53 PM
To: pen-test () securityfocus com
Subject: SNMP write permissions in "Windows 2003"

Does anyone have any techniques/knowledge/examples/ideas/etc. of what you
can do with SNMP "write" permissions on specially "Windows 2003"?  I
currently cannot find any good information as to what can be done.  Can you
walk the MIB like you can on other older SNMP enabled devices? if so, how?
Currently, I am not getting any good information from SNMPWalk, getif, etc.
I don't have Solarwinds, but I imagine it would be the same, just with the
extra bells and whistles.

Thanks allot for the advice in advance,
Sparky

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=70160000
0008bOW
------------------------------------------------------------------------





------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


Current thread: