Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.10407
Kategorie:Service detection
Titel:X Server Detection
Zusammenfassung:This plugin detects X Window servers.;; X11 is a client - server protocol. Basically, the server is in charge of the; screen, and the clients connect to it and send several requests like drawing; a window or a menu, and the server sends events back to the clients, such as; mouse clicks, key strokes, and so on...;; An improperly configured X server will accept connections from clients from; anywhere. This allows an attacker to make a client connect to the X server to; record the keystrokes of the user, which may contain sensitive information,; such as account passwords.; This can be prevented by using xauth, MIT cookies, or preventing; the X server from listening on TCP (a Unix sock is used for local; connections)
Beschreibung:Summary:
This plugin detects X Window servers.

X11 is a client - server protocol. Basically, the server is in charge of the
screen, and the clients connect to it and send several requests like drawing
a window or a menu, and the server sends events back to the clients, such as
mouse clicks, key strokes, and so on...

An improperly configured X server will accept connections from clients from
anywhere. This allows an attacker to make a client connect to the X server to
record the keystrokes of the user, which may contain sensitive information,
such as account passwords.
This can be prevented by using xauth, MIT cookies, or preventing
the X server from listening on TCP (a Unix sock is used for local
connections)

CVSS Score:
0.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:N

CopyrightCopyright (C) 2005 John Jackson

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.