RemotelyAnywhere WWW Detection

info Nessus Plugin ID 10920

Synopsis

A web server is listening on the remote host.

Description

A RemotelyAnywhere WWW server is running on the remote host. According to NAVCIRT, attackers use this management tool as a backdoor.

Solution

If you installed the RemotelyAnywhere WWW server then you can ignore this warning. If not, your machine is likely compromised by an attacker.

See Also

https://seclists.org/isn/2002/Mar/102

Plugin Details

Severity: Info

ID: 10920

File Name: RA_www_detect.nasl

Version: 1.23

Type: remote

Family: Backdoors

Published: 3/25/2002

Updated: 4/11/2022

Configuration: Enable thorough checks

Asset Inventory: true

Supported Sensors: Nessus

Vulnerability Information

CPE: cpe:/a:remotelyanywhere:remotelyanywhere