Vulnerabilities > CVE-2004-0950 - Information Disclosure vulnerability in Danware NetOp Remote Control

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
danware-data
nessus

Summary

NetOp Host before 7.65 build 2004278 allows remote attackers to obtain sensitive hostname, username and local IP address information via (1) a NetOp HELO request, or (2) when responses are disabled, a "custom" HELO request.

Nessus

NASL familyMisc.
NASL idNETOP_INFOPUBLIC.NASL
descriptionThis plugin displays the basic name and address information provided by NetOp products for easy network browsing. Administrators should disable displaying this information if they don
last seen2020-06-01
modified2020-06-02
plugin id15767
published2004-11-19
reporterCopyright (C) 2004-2018 Corsaire Limited and Danware Data A/S.
sourcehttps://www.tenable.com/plugins/nessus/15767
titleDanware NetOp Host HELO Request Remote Information Disclosure