PT-2000-1471 · Xinetd · Xinetd
Published
2000-06-04
·
Updated
2017-10-10
·
CVE-2000-0536
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
xinetd version 2.1.8.x
Description
The issue arises when hostnames are used for access control and the connecting host lacks a reverse DNS entry, leading to improper restriction of connections.
Recommendations
For xinetd version 2.1.8.x, consider configuring access control using IP addresses instead of hostnames to mitigate the risk of improper connection restrictions.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Xinetd