CVE
- Id
- 197
- CVE No.
- CVE-1999-0197
- Status
- Candidate
- Description
- finger 0@host on some systems may print information on some user accounts.
- Phase
- Proposed (19990726)
- Votes
- ACCEPT(1) Baker | MODIFY(2) Frech, Shostack | REJECT(1) Northcutt
- Comments
- Shostack> fingerd may respond to "finger 0@host" with account info | Frech> Need more reference to establish this "exposure". | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:finger-unused-accounts(8378) | We"re entering it into our database solely to track | competition. The only references seem to be product listings: | http://hq.mcafeeasap.com/vulnerabilities/vuln_data/1000.asp (1002 | Finger 0@host check) | http://www.ipnsa.com/ipnsa_vuln.htm?step=1000 (Finger 0@host check) | http://cgi.nessus.org/plugins/dump.php3?id=10069 (Finger zero at host | feature)