CVE-1999-0502
EXPLOITEDHP-UX - Unauthenticated Remote Login via Default Null Password
Title source: llmExploitation Summary
CVE-1999-0502 has been observed exploited in the wild (reported by VulnCheck KEV).
EIP tracks 25 public exploits from researchers including Metasploit, jduck, theLightCosine, including a Metasploit module auxiliary/scanner/rservices/rsh_login.
AI-analyzed exploit summary This Metasploit module exploits weak SSH credentials (CVE-1999-0502) to execute arbitrary commands via SSH. It supports multiple platforms and payload types, leveraging SSH authentication for remote code execution.
Description
A Unix account has a default, null, blank, or missing password.
Exploits (25)
This Metasploit module exploits weak SSH credentials (CVE-1999-0502) to execute arbitrary commands via SSH. It supports multiple platforms and payload types, leveraging SSH authentication for remote code execution.
This Metasploit module exploits weak authentication in rsh (CVE-1999-0502) by brute-forcing credentials and establishing a command shell. It requires privileged port access and tests for successful logins without passwords.
This Metasploit module scans for rlogin services and performs authentication brute-forcing. It does not exploit a specific vulnerability but checks for weak credentials, referencing CVE-1999-0502 (weak password) and CVE-1999-0651.
This Metasploit module scans for Telnet services and attempts to authenticate using provided credentials. It reports successful logins and can optionally create a session upon successful authentication.
This Metasploit module scans Brocade network devices for privileged logins by testing credentials, optionally extracting usernames from device configurations. It leverages Telnet for authentication brute-forcing and session creation upon successful login.
This Metasploit module scans for VMware HTTP services and attempts to authenticate using brute-force credentials. It identifies VMware products via SOAP requests and reports successful logins.
This Metasploit module is a login scanner for VMware Authentication Daemon (vmauthd) that performs brute-force authentication attempts. It checks for valid credentials and reports successful logins.
This Metasploit module is a WinRM login utility designed to authenticate against a WinRM service using NTLM or Kerberos. It supports credential brute-forcing and session creation upon successful authentication.
This Metasploit module is a MySQL login scanner that attempts to brute-force credentials (default: root with blank password) against MySQL servers. It checks the MySQL version and supports session creation if credentials are successful.
This Metasploit module attempts to authenticate to D-Link HTTP management services by brute-forcing credentials. It targets D-Link DIR-300B, DIR-600B, DIR-815, and DIR-645 devices via the `/session.cgi` endpoint.
This Metasploit module is a credential brute-forcing scanner for WordPress XML-RPC interfaces. It attempts to authenticate using provided username/password combinations and reports successful logins.
This Metasploit module performs a brute-force login attack against Joomla 2.5 or 3.0 by attempting to authenticate using provided username and password lists. It checks for successful login by analyzing HTTP responses and error messages.
This Metasploit module attempts to authenticate to D-Link HTTP management services by brute-forcing credentials. It targets D-Link DIR-300A, DIR-320, and DIR-615D devices with weak or default passwords.
This Metasploit module attempts to authenticate to Dell iDRAC web interfaces using default credentials. It supports multiple iDRAC versions (6-9) and includes brute-forcing capabilities with user/password wordlists.
This Metasploit module attempts to authenticate to D-Link DIR-615H HTTP management services by brute-forcing credentials. It includes functionality to detect D-Link devices and report successful logins.
This Metasploit module is a credential brute-forcing utility for HTTP services, attempting to authenticate against various URIs using provided or default wordlists. It supports multiple HTTP methods and success code configurations.
This Metasploit module attempts to brute-force or validate credentials for the Tomcat Application Manager by sending HTTP requests and checking for successful authentication responses. It supports both single credential testing and dictionary-based brute-forcing.
This Metasploit module performs a brute-force authentication attack against DB2 instances using provided username and password combinations. It is designed to test weak credentials and does not contain any exploit payload.
This Metasploit module scans for weak pcAnywhere credentials by brute-forcing logins over TCP port 5631. It performs a handshake with the service and attempts authentication with provided username/password combinations.
This Metasploit module is a PostgreSQL login utility that performs brute-force authentication against PostgreSQL instances using provided username and password combinations. It supports both plaintext and MD5-hashed passwords and can create interactive sessions upon successful login.
This Metasploit module is a credential scanner for SSH logins, testing both password and public key authentication methods. It reports successful logins and can create sessions for further exploitation.
This Metasploit module is a credential brute-forcing utility for NNTP services supporting AUTHINFO USER/PASS authentication. It attempts to authenticate using provided username/password lists and reports successful logins.
This is an FTP authentication scanner module from Metasploit that tests login credentials against FTP servers and reports successful logins. It includes brute-forcing capabilities and can record anonymous/guest logins if configured.
This Metasploit module is a credential brute-forcing utility for Oracle RDBMS, leveraging Nmap's NSE script to test username/password combinations against a specified SID. It reports successful logins, locked accounts, and errors, but does not exploit a specific vulnerability.
This Metasploit module exploits weak SSH credentials (CVE-1999-0502) to execute arbitrary commands or payloads on a target system via SSH. It supports multiple architectures and platforms, including Linux, OSX, BSD, and Python-based payloads.