X Display Manager Control Protocol (XDMCP) Detection

medium Nessus Plugin ID 10891

Synopsis

The XDMCP service is running on the remote host.

Description

The X Display Manager Control Protocol (XDMCP) service allows a Unix user to remotely obtain a graphical X11 login and therefore act as a local user on the remote host. If an attacker can gain a valid login and password, this service could be used to gain further access on the remote host. An attacker may also use this service to mount a dictionary attack against the remote host to try to log in remotely.

Note that XDMCP is vulnerable to man-in-the-middle attacks, making it easy for attackers to steal the credentials of legitimate users by impersonating the XDMCP server. In addition to this, XDMCP is not a ciphered protocol, which allows an attacker to capture the keystrokes entered by the user.

Solution

Disable the XDMCP service, if you do not use it, and do not allow this service to run across the Internet.

Plugin Details

Severity: Medium

ID: 10891

File Name: xdmcp.nasl

Version: 1.21

Type: remote

Published: 3/13/2002

Updated: 8/15/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Information

Vulnerability Publication Date: 1/1/2002