And while we are on the subject... If anyone owns the all in one ADSL2+
router from Linksys (model WAG54Gv2) and you currently have snmp service
enabled. Be sure that its not set to ALL (lock the service down to an ip
address or ip address range that query it.

Reason why I state this, is becuase one of the OID strings that can be
queried on the unit contains your ISP password in clear/plain text. So if
you have snmp set to ALL then anyone can query it and obtain your password
for your ISP from the certain OID string in question.

I reported it to one of the Linksys reps on whirlpool.

Cheers,

-- 
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html

Reply via email to