PT-2000-1471 · Xinetd · Xinetd
Publicado
2000-06-04
·
Atualizado
2017-10-10
·
CVE-2000-0536
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
xinetd version 2.1.8.x
Description
The issue arises when hostnames are used for access control and the connecting host lacks a reverse DNS entry, leading to improper restriction of connections.
Recommendations
For xinetd version 2.1.8.x, consider configuring access control using IP addresses instead of hostnames to mitigate the risk of improper connection restrictions.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Xinetd