PORTMAPPER: Null Proc

This protocol anomaly is the use of the NULL procedure of the portmapper RPC service. This could indicate someone is probing the server to see if the portmapper service is present.

Extended Description

Detection of an RPC NULL request in network traffic could indicate that an attacker is probing the RPC server for vulnerabilities.

Short Name
PORTMAPPER:INFO:NULL-PROC
Severity
Warning
Recommended
False
Recommended Action
None
Category
PORTMAPPER
Release Date
02/19/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?