27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>PVS</strong> ID: 4068 FAMILY: Data Leakage RISK: INFO NESSUS ID:Not Available<br />

Description: The remote FTP client was observed uploading an archive (zipped) file that contained a<br />

.pdf file. As an example, consider the following file that is a part of a .zip archive and was<br />

just uploaded to a remote FTP server\n%L\n\nDistributing files over FTP is a common way<br />

of distributing information. However, efforts should be taken to ensure that confidential<br />

files are not uploaded via FTP.<br />

Solution: N/A<br />

CVE Not available<br />

OpenOffice Version Information<br />

<strong>PVS</strong> ID: 4069 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the OpenOffice suite of business tools. The exact version is<br />

\n%L<br />

Solution: N/A<br />

CVE Not available<br />

Openfire < 3.3.1 Admin Console Privilege Escalation<br />

<strong>PVS</strong> ID: 4070 FAMILY: Web Servers RISK: HIGH NESSUS ID:25343<br />

Description: Synopsis :\n\nThe remote web server allows unauthenticated access to its administrative<br />

console.\n\nThe remote host is running Openfire / Wildfire, an instant messaging server<br />

supporting the XMPP protocol.\n\nThe version of Openfire or Wildfire installed on the<br />

remote host allows unauthenticated access to a servlet, which could allow a malicious user<br />

to upload code to Openfire via its admin console.<br />

Solution: Either firewall access to the admin console on this port or upgrade to Openfire version 3.3.1<br />

or higher.<br />

CVE-2007-2975<br />

Mozilla Firefox < 1.5.0.12 / 2.0.0.4 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4071 FAMILY: Web Clients RISK: HIGH NESSUS ID:25349<br />

Description: Synopsis :\n\nThe remote Windows host contains a web browser that is affected by<br />

multiple vulnerabilities.\n\nThe installed version of Firefox is affected by various security<br />

issues, one of which may lead to execution of arbitrary code on the affected host subject to<br />

the user's privileges.<br />

Solution: Upgrade to version 1.5.0.12 / 2.0.0.4 or higher.<br />

CVE-2007-1362<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1056

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!