Systat Service Remote Information Disclosure

medium Nessus Plugin ID 10275

Synopsis

The remote service inherently exposes potentially sensitive information.

Description

The 'systat' service provides useful information to an attacker, such as which processes are running, who is running them, and so on. It is highly recommended that you disable this service.

Solution

Comment out the 'systat' line in /etc/inetd.conf

See Also

http://www.apps.ietf.org/rfc/rfc866.html

Plugin Details

Severity: Medium

ID: 10275

File Name: systat.nasl

Version: Revision: 1.20

Type: remote

Family: Misc.

Published: 6/22/1999

Updated: 12/14/2016

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.4

CVSS v2

Risk Factor: Medium

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Reference Information

CVE: CVE-1999-0637