Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

APP:PCANYWHERE:LOGIN-ADMIN

Severity

Info

Recommended

No

Category

APP

Keywords

PCAnywhere Administrator Login

Release Date

2003/04/22

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

APP: PCAnywhere Administrator Login


This signature detects a PCAnywhere administrator login. Networks that allow PCAnywhere should use the rulebase to ignore admin login from administration PCs while alerting/blocking them from other sources.

Extended Description

Symantec pcAnywhere is shipped by default with a weak encryption scheme that is used to encrypt username and password transmittal. Therefore, usernames and password can be retrieved by anyone sniffing the network in between the host computer running pcAnywhere and the NT domain controller. Users of pcAnywhere can be authenticated with their NT domain username and password. In this case, the weakly encrypted transmitted authentication would be transmitted domain wide.

Affected Products

  • Symantec pcanywhere 9.0.0

References

  • BugTraq: 1093
  • CVE: CVE-2000-0300

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out