Search:     Advanced search
server monitoring

walld service

Article ID: 10240
Last updated: 27 Jan, 2009
Views: 399
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

walld service

This script is Copyright (C) 1999 Renaud Deraison

FamilyRPC
Plugin ID10240
Bugtraq ID
CVE IDCVE-1999-0181

Description:

The walld RPC service is running. It is usually used by the administrator
to tell something to the users of a network by making a message appear
on their screen.

Since this service lacks any kind of authentication, an attacker
may use it to trick users into doing something (change their password,
leave the console, or worse), by sending a message which would appear to be
written by the administrator.

It can also be used as a denial of service attack, by continually sending
garbage to the users screens, preventing them from working properly.

Solution : Disable this service.
Risk factor : Medium
This article was:   Helpful | Not Helpful
Prev   Next
Sun rpc.cmsd overflow     nlockmgr service