Security researchers discovered an SNMP flaw dubbed StringBleed that affects several models of Internet-connected devices. The issue resides in the way SNMP agent in running on differed IoT devices handles a human-readable string datatype value called community string that SNMP version 1 and 2 use. The researchers used a simple python script to build a snmpget request that used the.sysDescr OID, then they started scanning the Internet for devices that would respond to the request.”]
Source: https://securityaffairs.co/wordpress/58485/hacking/stringbleed-snmp-authentication-bypass.html

