Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Backdoors >> Unpassworded bash account


Vulnerability Assessment Details

Unpassworded bash account

Vulnerability Assessment Summary
Logs into the remote host with bash account

Detailed Explanation for this Vulnerability Assessment

The account 'account' has no password set.
A possible hacker may use it to gain further rights on this system

This account was probably created by a backdoor installed
by a fake Linux Redhat patch.

See http://www.k-otik.com/news/FakeRedhatPatchAnalysis.txt

Network Security Threat Level: High
Solution : disable this account and check your system

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Michel Arboi

Cables, Connectors

670026-001 - HP BL460c G8 SA P220i PCI-Ex4 6Gb/s SAS Raid Controller 690164-B21
$28.99
670026-001 - HP BL460c G8 SA P220i PCI-Ex4 6Gb/s SAS Raid Controller 690164-B21 pictureAVID Server RAID Controller AMCC 9550SXU-12SI 12x S-ATA 256MB 300MB/s W/CABLES
$21.99
AVID Server RAID Controller AMCC 9550SXU-12SI 12x S-ATA 256MB 300MB/s W/CABLES pictureSUN StorageTek 8-Port PCIe SAS Raid Controller 375-3536 W/Cables
$24.99
SUN StorageTek 8-Port PCIe SAS Raid Controller 375-3536 W/Cables pictureHP DL380 85 G6 P410 Smart Array RAID Kit Cage & Backplane 496074-001 462919-001
$39.99
HP DL380 85 G6 P410 Smart Array RAID Kit Cage & Backplane 496074-001 462919-001 picture


Discussions

No Discussions have been posted on this vulnerability.