145
Webmin detection
CGI
2004/09/06
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
2004/11/13
1.1
Corrected the plugin structure and added the accuracy values in 1.1
tcp
10000
open|sleep|close|pattern_exists Webmin
90
This plugin was written with the ATK Attack Editor.
Webmin
Other products
Configuration
The target host is running Webmin. This open-source utility provides a web interface for the system and server administration of a Unix host. An attacker may get additional information about the target or gain elevated privileges by breaking the security of Webmin.
Disable the service if it is not needed. Install firewalling to prevent unwanted connections to the Webmin port.
Approx. 30 minutes
Yes
Yes
Yes
Medium
8
8
6
7
Medium
Nessus is also able to do the same check.
10757
Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427
http://www.computec.ch