SNMP Information Disclosure

Vulnerability Details

Severity:

Medium

Category:

Network

Description

SNMP services are accessible with default or weak community strings, allowing unauthorized parties to query device information and potentially modify configurations.

Risks

An attacker could extract sensitive network configuration details, hardware information, running processes, and installed software. With write access, attackers could modify device configurations.

Remediation

Change default SNMP community strings. Use SNMPv3 with authentication and encryption. Restrict SNMP access to authorized management stations using ACLs. Disable SNMP if not required.