IBM Tivoli Management Framework Endpoint addr URL Default Credentials

This script is Copyright (C) 2011-2013 Tenable Network Security, Inc.


Synopsis :

It is possible to authenticate to the remote server using the default
credentials.

Description :

The remote Tivoli Endpoint installation is secured by default
credentials. Nessus is able to make authenticated requests to '/addr'
by using the username 'tivoli' and password 'boss', which are
hard-coded in the server executable.

A remote, unauthenticated attacker could change the endpoint's
configuration or disable the web interface by using these default
credentials.

See also :

http://www.nessus.org/u?931779eb

Solution :

Disable the ability to change endpoint configuration from the browser
using the 'http_disable' configuration setting. Refer to the IBM
documentation for more information.

Risk factor :

Medium / CVSS Base Score : 6.4
(CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:P)
Public Exploit Available : true

Family: Web Servers

Nessus Plugin ID: 54987 ()

Bugtraq ID:

CVE ID: