Become a fan of Slashdot on Facebook

 



Forgot your password?
typodupeerror

Comment Re:Cisco backdoors (Score 1) 393

The first is a flaw, not an intentional backdoor. The second requires a person to login as pnadmin and then execute the "expert" command with the expert password. This cannot be done remotely or without logging in as pnadmin. This doesn't look very catastrophic -- someone would have to hack the pnadmin account and if they did that, they wouldn't even need the "expert backdoor" because they would already own the box.

From your link:

"This privileged account is intended to be used only by authorized Cisco development engineers for advanced debugging purposes. No direct remote access to the root account is permitted. In order to access a privileged system shell, users must first successfully login into the CS-MARS system administration command line interface with the pnadmin account. Once authenticated, the root account can be accessed with the undocumented command expert."

Slashdot Top Deals

"We want to create puppets that pull their own strings." -- Ann Marion "Would this make them Marionettes?" -- Jeff Daiell

Working...