CNCVE编号:CNCVE-20010645 CVE编号:CAN-2001-0645 安全级别:高 漏洞中文描述: Symantec/AXENT NetProwler 3.5.x 包含缺省的口令,这允许远程攻击者可以通过“admin”口令访问管理层或用空口令从管理层连接MySQL ODBC。 漏洞英文描述: Symantec/AXENT NetProwler 3.5.x contains several default passwords, which could allow remote attackers to (1) access to the management tier via the "admin" password, or (2) connect to a MySQL ODBC from the management tier using a blank password. 漏洞参考: Reference: BUGTRAQ:20010510 Corsaire Limited Security Advisory - Symantec/Axent NetProwler 3. 5.x password restrictions Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-05/0097.html Reference: BUGTRAQ:20010510 Corsaire Limited Secu 系统类型: Win2000/NT 漏洞类型:设计错误