Plugin 20148 Query - Netbackup Agent Detection
Norma Snockers <[email protected]> Mon, 16 Mar 2009 20:33:42 +0000
| Newsgroups | gmane.comp.security.nessus.general |
|---|---|
| Message-ID | <[email protected]> |
--===============0312809637==
Content-Type: multipart/alternative;
boundary="_64f00a29-14c7-4ff7-8234-9df4892ab155_"
--_64f00a29-14c7-4ff7-8234-9df4892ab155_
Content-Type: text/plain; charset="Windows-1252"
Content-Transfer-Encoding: quoted-printable
Hi=2C=20
=20
apologies if this is the wrong place to query this.
=20
Nessus plugin 20148 gives the scenario:
=20
The remote host is running the VERITAS NetBackup Java Console
service.
This service is used by the NetBackup Java Console GUI to
manage the backup server.
A user=2C authorized to connect to this service=2C can use it as
a remote shell with system privileges by sending=20
'command_EXEC_LIST' messages.
=20
With a risk factor of 'none'.
=20
Would a kind person please explain a little further - which versions are vu=
lnerable=2C if 'all' then is this an inherent functionality that cannot be =
removed=2C and if why is the risk none?
=20
If an authorised user connects to the java service then how is that achieve=
d=2C does that user have to have system privileges in which case I can see =
how the risk is 'none'=2C or the service have a 'normal user' service accou=
nt=2C in which case the risk could be something if the credentials of the s=
ervice account are compromised.
=20
Sorry to be noobish and lack of experience of the product does not help=2C =
but Google hasn't helped much and this question did not appear on any searc=
hes I tried.
=20
Is there an example of what can be achieved so that I can evaluate in a tes=
t environment?
=20
I've probably overlooked the obvious but happy to be shot down to be told :=
)
=20
Many thanks.
_________________________________________________________________
25GB of FREE Online Storage =96 Find out more
http://clk.atdmt.com/UKM/go/134665320/direct/01/=
--_64f00a29-14c7-4ff7-8234-9df4892ab155_
Content-Type: text/html; charset="Windows-1252"
Content-Transfer-Encoding: quoted-printable
<html>
<head>
<style>
.hmmessage P
{
margin:0px=3B
padding:0px
}
body.hmmessage
{
font-size: 10pt=3B
font-family:Verdana
}
</style>
</head>
<body class=3D'hmmessage'>
Hi=2C <BR>
 =3B<BR>
apologies if this is the wrong place to query this.<BR>
 =3B<BR>
Nessus plugin 20148 gives the scenario:<BR>
 =3B<BR>
The remote host is running the VERITAS NetBackup Java Console<BR>service.<B=
R>This service is used by the NetBackup Java Console GUI to<BR>manage the b=
ackup server.<BR>A user=2C authorized to connect to this service=2C can use=
it as<BR>a remote shell with system privileges by sending <BR>'command_EXE=
C_LIST' messages.<BR>
 =3B<BR>
With a risk factor of 'none'.<BR>
 =3B<BR>
Would a kind person please explain a little further - which versions are vu=
lnerable=2C if 'all' then =3Bis this an inherent functionality that can=
not be removed=2C and if why is the risk none?<BR>
 =3B<BR>
If an authorised user connects to the java service then how is that achieve=
d=2C does that user have to have system privileges in which case I can see =
how the risk is 'none'=2C or the service have =3Ba 'normal user' servic=
e account=2C in which case the risk could be something if the credentials o=
f the service account are compromised.<BR>
 =3B<BR>
Sorry to be noobish and lack of experience of the product does not help=2C =
but Google hasn't helped much and this question did not appear on any searc=
hes I tried.<BR>
 =3B<BR>
Is there an example of what can be achieved so that I can =3Bevaluate i=
n a test environment?<BR>
 =3B<BR>
I've probably overlooked the obvious but happy to be shot down to be told :=
)<BR>
 =3B<BR>
Many thanks.<BR><br /><hr />Share your photos with Windows Live Photos =96 =
Free. <a href=3D'http://clk.atdmt.com/UKM/go/134665338/direct/01/' target=
=3D'_new'>Try it Now!</a></body>
</html>=
--_64f00a29-14c7-4ff7-8234-9df4892ab155_--
--===============0312809637==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus
--===============0312809637==--