Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Xinetd安全绕过漏洞
Vulnerability Description
Xinetd是Inernet Service daemon(inetd)的一个新的实现,它已经成为一些较新版本的 Unix操作系统基本软件的一部分。 Xinetd 2.3.15之前版本中的builtins.c中存在安全绕过漏洞。攻击者可利用该漏洞绕过防火墙预设的安全限制,通过tcpmux端口获取服务,这可能导致进一步的攻击。
CVSS Information
N/A
Vulnerability Type
N/A