RPC bootparamd NIS Domain Name Disclosure

Medium Nessus Plugin ID 12237

Synopsis

The remote RPC service is disclosing information.

Description

Using the remote bootparamd service, it was possible to obtain the NIS domain of the network. A remote attacker could use this information to mount further attacks.

Solution

Filter incoming traffic to this port.

Plugin Details

Severity: Medium

ID: 12237

File Name: bootparamd_get_nis_domain.nasl

Version: Revision: 1.16

Type: remote

Family: RPC

Published: 2004/05/13

Modified: 2015/09/24

Dependencies: 10223

Risk Information

Risk Factor: Medium

CVSS v2.0

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

Required KB Items: rpc/portmap

Exploited by Nessus: true