Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.802163
Categoría:RPC
Título:Calendar Manager Service rpc.cmsd Service Detection
Resumen:This script detects the running 'rpc.cmsd' service on the host.
Descripción:Summary:
This script detects the running 'rpc.cmsd' service on the host.

Vulnerability Insight:
The flaw is due to error in the 'rpc.cmsd' service. If this
service is running then disable it as it may become a security issue.

Vulnerability Impact:
Successful exploitation could allow attackers to execute
arbitrary code with the privileges of the rpc.cmsd daemon, typically root. With some
configurations rpc.cmsd runs with an effective userid of daemon, while retaining root privileges.

Solution:
HEWLETT-PACKARD and Sun Microsystems, Inc have released a
patch to fix this issue, please refer below link for more information. For other distributions please contact your vendor.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-1999-0696
Bugtraq: 19990709 Exploit of rpc.cmsd (Google Search)
Cert/CC Advisory: CA-99-08
Computer Incident Advisory Center Bulletin: J-051
http://www.ciac.org/ciac/bulletins/j-051.shtml
COMPAQ Service Security Patch: SSRT0614U_RPC_CMSD
HPdes Security Advisory: HPSBUX9908-102
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9908-102
SCO Security Bulletin: SB-99.12
Sun Security Bulletin: 00188
http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/188
Sun Bug ID: 4230754
XForce ISS Database: sun-cmsd-bo
Common Vulnerability Exposure (CVE) ID: CVE-1999-0320
Sun Security Bulletin: 00166
http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/166
XForce ISS Database: sun-rpc.cmsd
CopyrightCopyright (C) 2011 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.