This script is Copyright (C) 2003-2011 Tenable Network Security, Inc.
The remote host is susceptible to an information disclosure attack.
The remote 3com SuperStack II Remote Access System 1500 discloses
its user configuration (user_settings.cfg) when the file is
requested through the web interface.
This file contains the password (in clear text) of this device
as well as other sensitive information.
An attacker may use this flaw to gain the control of this host.
See also :
Filter incoming traffic to this host.
Risk factor :
Medium / CVSS Base Score : 5.0
CVSS Temporal Score : 5.0
Public Exploit Available : true
Nessus Plugin ID: 11480 (3com_config_disclosure.nasl)
Bugtraq ID: 7176
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.