Vulnerabilities > CVE-2001-0484 - Unspecified vulnerability in TEK Phaserlink 850
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Tektronix PhaserLink 850 does not require authentication for access to configuration pages such as _ncl_subjects.shtml and _ncl_items.shtml, which allows remote attackers to modify configuration information and cause a denial of service by accessing the pages.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Tektronix Phaser 740/750/850/930 Network Printer Administration Interface Vulnerability. CVE-2001-0484. Remote exploit for hardware platform |
id | EDB-ID:20806 |
last seen | 2016-02-02 |
modified | 2001-04-25 |
published | 2001-04-25 |
reporter | Ltlw0lf |
source | https://www.exploit-db.com/download/20806/ |
title | Tektronix Phaser 740/750/850/930 Network Printer Administration Interface Vulnerability |
Nessus
NASL family | CGI abuses |
NASL id | NCL_ITEMS_2.NASL |
description | The file /_ncl_items.shtml or /_ncl_subjects.shtml exists on the remote web server. If the remote host is a Tektronix printer, then this page allows anyone to reconfigure it without any authentication means whatsoever. An attacker may use this flaw to conduct a denial of service attack against your business by preventing legitimate users from printing their work, or against your network, by changing the IP address of the printer so that it conflicts with the IP address of your file server. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10665 |
published | 2001-05-10 |
reporter | This script is Copyright (C) 2001-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/10665 |
title | Tektronix PhaserLink Multiple Admin Page Unauthenticated Configuration Manipulation |
code |
|