barracuda networks ssh vulnerability

6
SSH Exploit Critical SSH Exploit in Barracuda Appliances, and What You Can Do To Fix It.

Upload: galaxytech-international

Post on 18-Jul-2015

462 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Barracuda Networks SSH Vulnerability

SSH ExploitCritical SSH Exploit in Barracuda

Appliances, and What You Can Do To Fix It.

Page 2: Barracuda Networks SSH Vulnerability

Systems Effected

• Barracuda Spam and Virus Firewall

• Barracuda Web Filter

• Barracuda Message Archiver

• Barracuda Web Application Firewall

• Barracuda Link Balancer

• Barracuda Load Balancer

• Barracuda SSL VPN

• ALL VERSIONS

Page 3: Barracuda Networks SSH Vulnerability

Issue

• Eight default accounts exist

• Used for diagnose by Barracuda on an

appliance

• They cannot be disabled

• Passwords cannot be changed

Page 4: Barracuda Networks SSH Vulnerability

Exploits

• Account passwords can be broken with

dictionary attack

• The product account can used to create

new users with administrative privileges

• Root access can be obtained

Page 5: Barracuda Networks SSH Vulnerability

Fix

• Barracuda currently working on patch

• Until then, make sure to load security

definition 2.0.5 (It’s possible the root

account could still be cracked)

• Prevents unauthorized users from SSH to

appliance

Page 6: Barracuda Networks SSH Vulnerability

Need Help?

• We can help get you up to date

• Visit us at

http://www.gti1.com/about-us/contact-us/

• Join our upcoming webinar (URL below)

to see how we can help with DLP / Email