x server detection vulnerability

572 views
Skip to first unread message

Praveen Kumar

unread,
Jun 19, 2015, 2:05:10 AM6/19/15
to null-...@googlegroups.com

Team,

 

During my last internal vulnerability assessment I found few vulnerabilities related to "X Server" which are " 'X Server Detection', 'X11 Server Unauthenticated Access' & 'X Server Unauthenticated Access: Screenshot' " and the recomentation provided by Nessus is "Restrict access to this port by using the 'xhost' command. If the X client/server facility is not used, disable TCP connections to the X server entirely" as the ports identified with this vulnerabilities are (6000 & 6001) which are already blocked from the network side. however we are still getting this .

 

Please provide your valuable suggestions to fix this vulnerability.

 

Regards,

Praveen D Kumar.

Rajesh A.

unread,
Jun 19, 2015, 2:23:50 AM6/19/15
to null-...@googlegroups.com

R u scanning with credentials?

--
______________________________________________________________________________
null - Spreading the right Information
null Mailing list charter: http://null.co.in/section/about/null_list_charter/
---
You received this message because you are subscribed to the Google Groups "null" group.
To unsubscribe from this group and stop receiving emails from it, send an email to null-co-in+...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/null-co-in/54c84d17-ffbb-48e3-ae11-cf978545efeb%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.
Reply all
Reply to author
Forward
0 new messages