|
|
|
![]() |
Vulnerability Note VU#577729Dell Openmanage CD launches unauthenticated servicesOverviewDell Openmanage CD launches X11 and SSH daemons that permit unauthenticated users full access.I. DescriptionThe Dell Openmanage CD gives system administrators using Dell servers access to drivers, diagnostic tools, remote system control, and other utilities. When loaded, the CD launches X11 and SSH daemons that grant unauthenticated users full access. An attacker would need network access to the server to exploit this vulnerability.II. ImpactA remote attacker with network access to the server could take control of the affected system. Only IP connectivity to the server is required to exploit this vulnerability.III. SolutionThe CERT/CC is currently unaware of a practical solution to this problem.Restrict Access
References
This document was written by Ryan Giobbi.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||