This script is Copyright (C) 2003-2015 Tenable Network Security, Inc.
The remote host is susceptible to an information disclosure attack.
The remote 3com SuperStack II Remote Access System 1500 discloses
its user configuration (user_settings.cfg) when the file is
requested through the web interface. The file is transmitted in
cleartext and contains the password of the device as well as other
An attacker may use this flaw to gain the control of this host.
See also :
Filter incoming traffic to this host.
Risk factor :
Medium / CVSS Base Score : 5.0
CVSS Temporal Score : 5.0
Public Exploit Available : true
Nessus Plugin ID: 11480 (3com_config_disclosure.nasl)
Bugtraq ID: 7176
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.