Solaris 10 (sparc) : 148975-01

medium Nessus Plugin ID 107671

Synopsis

The remote host is missing Sun Security Patch number 148975-01

Description

Vulnerability in the Solaris component of Oracle and Sun Systems Products Suite (subcomponent: Utility/Remote Execution Server(in.rexecd)). Supported versions that are affected are 8, 9, 10 and 11. Easily exploitable vulnerability allows successful unauthenticated network attacks via TCP/IP. Successful attack of this vulnerability can result in unauthorized read access to a subset of Solaris accessible data.

Solution

Install patch 148975-01 or higher

See Also

https://getupdates.oracle.com/readme/148975-01

Plugin Details

Severity: Medium

ID: 107671

File Name: solaris10_148975-01.nasl

Version: 1.5

Type: local

Published: 3/12/2018

Updated: 1/14/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 2.5

CVSS v2

Risk Factor: Medium

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

CVSS Score Source: CVE-2013-0398

Vulnerability Information

CPE: p-cpe:/a:oracle:solaris:10:120329, p-cpe:/a:oracle:solaris:10:148975, cpe:/o:oracle:solaris:10

Required KB Items: Host/local_checks_enabled, Host/Solaris/showrev

Patch Publication Date: 2/6/2013

Vulnerability Publication Date: 7/17/2013

Reference Information

CVE: CVE-2013-0398