Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.10068
Category:Useless services
Title:Finger
Summary:NOSUMMARY
Description:Description:

The remote host is running the 'finger' service.

The purpose of this service is to show who is currently logged
into the remote system, and to give information about the users
of the remote system.

It provides useful information to attackers, since it allows them
to gain usernames, determine how used a machine is, and see when
each user logged in for the last time.


Solution :
Comment out the 'finger' line in /etc/inetd.conf and restart
the inetd process

Risk factor : Low

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-1999-0612
https://www.cve.org/CVERecord?id=CVE-1999-0612
XForce ISS Database: finger-out
XForce ISS Database: finger-running
CopyrightThis script is Copyright (C) 1999 Renaud Deraison

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.