CVE-2000-0384: Critical severity Intel Netstructure 7180 vulnerability
NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure's MAC address, which could allow remote attackers to gain root access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable or remove the undocumented accounts 'servnow', 'root', and 'wizard' on affected NetStructure 7110 and 7180 devices if they are not required, using the device management interface or CLI.
Intel NetStructure 7110 / 7180 account_enabled (servnow, root, wizard) = disabled - Compensating control
Restrict network access to the management interfaces of affected NetStructure 7110 and 7180 devices (for example, via firewall rules, ACLs, or network segmentation) to trusted IPs only until the accounts are removed, disabled, or secured.
- Operational
Change the passwords for the 'servnow', 'root', and 'wizard' accounts to strong, unique passwords if the accounts must remain. If passwords cannot be changed to non-guessable values, disable or remove the accounts.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0384?
CVE-2000-0384 is considered a high severity vulnerability due to the ability for attackers to gain root access remotely.
How do I fix CVE-2000-0384?
To fix CVE-2000-0384, it is recommended to disable the undocumented accounts or change their default passwords that could be guessed using the MAC address.
Which devices are affected by CVE-2000-0384?
CVE-2000-0384 affects Intel Netstructure 7110 and 7180 devices.
Can CVE-2000-0384 be exploited without physical access?
Yes, attackers can exploit CVE-2000-0384 remotely due to the easily guessable passwords.
What are the default usernames associated with CVE-2000-0384?
The default usernames associated with CVE-2000-0384 are servnow, root, and wizard.