CNCVE编号:CNCVE-20020039 CVE编号: 安全级别:高 漏洞中文描述: OmniPCX是企业级的Personal Communications Exchange (PCX)系统,由Alcatel负责维护开发。OmniPCX系统在安装过程中没有提示用户修改各种缺省口令。而OmniPCX系统缺省情况下开放了很多服务,比如telnet、ftp,于是潜在存在安全问题。 漏洞英文描述: OmniPCX is an enterprise-level Personal Communications Exchange (PCX) system maintained and distributed by Alcatel. OmniPCX systems do not prompt users to change passwords of various accounts during install. The passwords used for various accounts on the PCX system are known defaults. This problem is further compounded by the fact that a number of services, such as telnet, ftp, and login listen on the system by default. This problem is known to affect OmniPCX 4400 systems, and may affect others as well. 漏洞参考: http://archives.neohapsis.com/archives/bugtraq/2002-02/0188.html http://www.ind.alcatel.com/omnipcx/index.cfm?cnt=index 系统类型:其他 漏洞类型:设计错误