Skip to content

Commit e514b9e

Browse files
committed
SNMP: reword remediation suggestions
1 parent 9df1609 commit e514b9e

File tree

1 file changed

+8
-2
lines changed

1 file changed

+8
-2
lines changed

monkey/agent_plugins/exploiters/snmp/manifest.yaml

+8-2
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,16 @@ safe: true
1212
remediation_suggestion: >-
1313
Configure SNMP to use read-only communities.
1414
15+
Apply security updates to your Net-SNMP installation.
16+
1517
Limit access over SNMP to trusted hosts.
1618
1719
Use SNMPv3 with the authPriv security level if possible.
1820
1921
20-
The machine is vulnerable to an SNMP attack.
21-
An Infection Monkey Agent executed a command over SNMP using stolen/configured credentials.
22+
The machine is vulnerable to an attack on Net-SNMP via
23+
[CVE-2020-15862](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15862)
24+
An Infection Monkey Agent executed a command over SNMP using
25+
stolen/configured credentials or community strings. This attack was
26+
possible because the version of Net-SNMP running on the server has not had
27+
security patches applied.

0 commit comments

Comments
 (0)