Vulnerability Name: | CCN-13696 |
Published: | 2003-11-11 |
Updated: | 2003-11-11 |
Summary: | The remote exec (rexec) service allows a user to execute commands remotely, often without having to provide either a user ID or a password. Because of the lack of explicit authentication and because authentication details are passed in the clear, use of this service poses a high risk to a system. Access should be denied to remote systems that do not require access (ideally ‘ALL’). |
CVSS v3 Severity: | |
CVSS v2 Severity: | |
Vulnerability Consequences: | Informational |
References: | Source: CCN Type: SANS/FBI Top 20 List The Twenty Most Critical Internet Security Vulnerabilities Source: XF Type: UNKNOWN rservice-exec-wrapper-deny(13696) |
Vulnerable Configuration: | Configuration CCN 1:![]() |
BACK |