[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-95701-9

Platform: cpe:/o:debian:debian_linux:11.x, cpe:/o:ubuntu:ubuntu_linux:16.04, cpe:/o:ubuntu:ubuntu_linux:18.04, cpe:/o:ubuntu:ubuntu_linux:20.04, cpe:/o:ubuntu:ubuntu_linux:22.04, cpe:/o:ubuntu:ubuntu_linux:23.04Date: (C)2021-06-15   (M)2023-09-01



The contents of /etc/motd file are displayed to users after login and function as a message of the day for authenticated users. Rationale: Warning messages inform users who are attempting to login to the system of their legal status regarding the system and must include the name of the organization that owns the system and any monitoring policies that are in place. Displaying OS and patch level information in login banners also has the side effect of providing detailed system information to attackers attempting to target specific exploits of a system. Fix: Edit /etc/motd file with the appropriate contents according to your site policy, remove any instances of s m v


Parameter:

[yes/no]


Technical Mechanism:

Edit /etc/motd file with the appropriate contents according to your site policy, remove any instances of \r \s \m \v

CCSS Severity:CCSS Metrics:
CCSS Score : 4.4Attack Vector: LOCAL
Exploit Score: 1.8Attack Complexity: LOW
Impact Score: 2.5Privileges Required: LOW
Severity: MEDIUMUser Interaction: NONE
Vector: AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:LScope: UNCHANGED
 Confidentiality: LOW
 Integrity: NONE
 Availability: LOW
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:70727
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:69550
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:70831
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:87416
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:85278
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:92252


OVAL    6
oval:org.secpod.oval:def:70727
oval:org.secpod.oval:def:69550
oval:org.secpod.oval:def:70831
oval:org.secpod.oval:def:92252
...
XCCDF    8
xccdf_org.secpod_benchmark_general_Ubuntu_16_04
xccdf_org.secpod_benchmark_general_Ubuntu_18_04
xccdf_org.secpod_benchmark_NIST_800_53_r5_Debian_11
xccdf_org.secpod_benchmark_general_Debian_11
...

© SecPod Technologies