Short Name |
SCAN:MISC:HTTP:START-STOP-DOS |
---|---|
Severity |
Info |
Recommended |
No |
Category |
SCAN |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects access to the ColdFusion startstop.html file. Attackers stop the ColdFusion server.
When installing Caldera OpenLinux 2.2 using the LISA book disk an account with root privileges called "help" is created with no password. This account is not deleted from the system when installation is compleated nor is a password assigned to it. Anyone can logon into the system as "help" and obtain root privileges. This vulnerability only affect the LISA style of installation. The new Lizard (graphical) installation interface is not affected.