|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Useless services >> Rsh Server Detection Vulnerability Assessment Details
|
Rsh Server Detection |
||
Searches for the existence of rsh Detailed Explanation for this Vulnerability Assessment Summary : The rsh service is running. Description : The remote host is running the 'rsh' service. This service is dangerous in the sense that it is not ciphered - that is, everyone can sniff the data that passes between the rsh client and the rsh server. This includes logins and passwords. Also, it may permit poorly authenticated logins without passwords. If the host is vulnerable to TCP sequence number guessing (from any network) or IP spoofing (including ARP hijacking on a local network) then it may be possible to bypass authentication. Finally, rsh is an easy way to turn file-write access into full logins through the .rhosts or rhosts.equiv files. You should disable this service and use ssh instead. Solution : Comment out the 'rsh' line in /etc/inetd.conf Network Security Threat Level: Low / CVSS Base Score : 2 (AV:R/AC:H/Au:R/C:P/A:N/I:N/B:C) Networks Security ID: Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Tenable Network Security |
||
Cables, Connectors |
Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR
$47.00
Cisco WS-C3750-48PS-S 48-Port Managed Gigabit Switch
$45.00
HP ProCurve 4108gl J4865A Modular Network Switch
$30.00
Cisco Catalyst 3850 48 PoE+ 48-Port Gigabit Managed Switch WS-C3850-48F-E
$219.99
New Linksys SE3005 5-port Gigabit Ethernet Switch
$15.99
Linksys SE3008 8 Ports Rack Mountable Gigabit Ethernet Switch
$18.99
NETGEAR 5-Port Gigabit Ethernet Unmanaged Switch (GS305) - NEW IN BOX
$18.99
Cisco WS-C3750X-48T-S 48 Port 3750X Gigabit Switch - Same Day Shipping
$49.99
*NETGEAR PROSAFE (JGS524V2) 24-Port Gigabit Ethernet Switch *NO AC*
$29.99
Fortinet FortiSwitch FS-124D-POE 24 Port Gigabit Ethernet Switch UNREGISTERED
$89.97
|
||
No Discussions have been posted on this vulnerability. |