PCI Compliance

N/A High (7.5) 2000/tcp Rsh Service Detection
CVE-1999-0651
Remote
Access
Software,
Invalid
Finding

I know the port 2000 is the Bandwidth test server but hasn’t that always been on? I’m wondering why it’s just now giving an error this year.

PCI scans are such a joke. Just setup port scan detection and block them as they attempt to scan. They love to find any open port and consider it a fail and charge the customer more for being out of “compliance”.