Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Netware >> Novell Groupwise Servlet Manager default password


Vulnerability Assessment Details

Novell Groupwise Servlet Manager default password

Vulnerability Assessment Summary
Checks for Netware servlet server default password

Detailed Explanation for this Vulnerability Assessment

The Novell Groupwise servlet server is configured with the default password.
As a result, users could be denied access to mail and other servlet
based resources.

To test this finding:

https:///servlet/ServletManager/

enter 'servlet' for the user and 'manager' for the password.

Solution: Change the default password

Edit SYS:\JAVA\SERVLETS\SERVLET.PROPERTIES

change the username and password in this section
servlet.ServletManager.initArgs=datamethod=POST,user=servlet,password=manager,bgcolor

See also: http://www.securityfocus.com/bid/3697

Network Security Threat Level: Medium

Networks Security ID: 3697

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 David Kyger

Cables, Connectors

631667-B21 HP P222 RAID Controller 6.0Gb/s
$29.99
631667-B21 HP P222 RAID Controller 6.0Gb/s pictureLOT OF10 Low-Profile Bracket for HP RAID P420 P440 H220 P430 H240 P410 P400
$8.9
LOT OF10 Low-Profile Bracket for HP RAID P420 P440 H220 P430 H240 P410 P400  pictureWD Passport Pro 4 TB External Portable Hard Drive for MAC - RAID, Thunderbolt
$99.0
WD Passport Pro 4 TB External Portable Hard Drive for MAC - RAID, Thunderbolt  pictureAdaptec ASR-2405 SAS SATA 4 port 3 GB/s PCIE 2405 RAID Adapter
$15.0
Adaptec ASR-2405 SAS SATA 4 port 3 GB/s PCIE  2405 RAID Adapter picture


Discussions

No Discussions have been posted on this vulnerability.