Monday, May 14, 2007

Cisco says FTP feature in IOS is a hacker backdoor

Network World

Optical Networking




Network World's Optical Networking Newsletter, 05/14/07

Cisco says FTP feature in IOS is a hacker backdoor

By Phil Hochmuth

Cisco says a flaw in the FTP server utility in its IOS router/switch software could be used as a backdoor by attackers.

IOS FTP, which comes disabled by default in IOS, is used to upload IOS software images and other software to routers and switches remotely. However, Cisco says attackers could exploit a vulnerability in the FTP server to gain access to the file system of an IOS-based router or switch and affect configuration settings.

“Unauthorized users could retrieve the device's startup-config file from the filesystem,” Cisco says. “This file may contain information that could allow the attacker to gain escalated privileges.”

Network World LAN/WAN Buyer's Guide

Find the right LAN/WAN products for your enterprise - fast. Our extensive database of detailed product information will help you quickly pinpoint what you need. With the side-by-side comparison tool you can evaluate product features and make the best decision for your enterprise.

Click here to go to the Buyer's Guide now.

Cisco is offering customers software fixes with the FTP server removed from IOS.

In the meantime, Cisco says users should shut down IOS FTP if they are running the server on an affected system. (The command to do this is “no ftp-server enable”.) The company says users can upload software to IOS devices through other methods, such as the “Secure Copy” feature in the software. Users can also set up access control lists to restrict FTP access to a router or switch, Cisco adds.

The affected IOS versions are: 11.3, 12.0, 12.1, 12.2, 12.3 and 12.4. Cisco’s IOS XR is not vulnerable, and non-IOS Cisco devices are also safe. Cisco says it will remove the FTP feature in IOS because of this, and other past issues with the code. The company says it may add a secure FTP server to IOS in the future.


  What do you think?
Post a comment on this newsletter

TODAY'S MOST-READ STORIES:

1. Top 15 controversial Microsoft quotes
2. Microsoft cuts key Longhorn virtualization features
3. Analysts squash IBM layoff rumors
4. 7 green products that can save you dough
5. 5 cool future IT positions
6. 10 ways to boost your IT org now
7. Is organized crime moving into cybersphere?
8. IPv4: No way to slow down
9. With Yahoo deal off, what next for Microsoft?
10. IMS networks face security challenges

MOST DOWNLOADED PODCAST:
5 Cool iPod Tricks and Tips


Contact the author:

Phil Hochmuth is a Network World Senior Editor and a former systems integrator. You can reach him at phochmut@nww.com.



ARCHIVE

Archive of the Optical Networking Newsletter.


BONUS FEATURE

IT PRODUCT RESEARCH AT YOUR FINGERTIPS

Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details.


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: networking.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

No comments: