FTP: IRIX Default Account Access Attempt

This signature detects attempts to log in to an IRIX 6.2 account that has no password by default. Accounts that are not configured with passwords by default are: root, lp, nuucp, EZsetup, demos, OutOfBox, guest, and 4dgifts.

Extended Description

An attacker who discovers an IRIX host having passwordless default accounts enabled may be able to log in to the accounts, without a password, via Telnet or FTP. The command shell and file transfer access provided by these default accounts may allow the attacker to conduct additional penetration attempts against the affected host.

Short Name
FTP:USER:IRIX-DEF-ACCT
Severity
Warning
Recommended
False
Recommended Action
None
Category
FTP
Keywords
Access Account Attempt CVE-2006-6563 Default IRIX
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
CVSS Score

6.6

Found a potential security threat?