27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

'nsrexecd.exe' application. An attacker exploiting this flaw would only require the ability to<br />

connect to the nsrexecd.exe listening port (111/TCP). Successful exploitation would result<br />

in the execution of arbitrary code.<br />

Solution: Upgrade or patch according to vendor recommendations.<br />

CVE-2007-3618<br />

ClamAV < 0.91.2 Multiple Remote DoS<br />

<strong>PVS</strong> ID: 4183 FAMILY: Web Clients RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a Denial of Service (DoS) attack.\n\nThe<br />

remote host is running the ClamAV anti-virus client version '%L'\n\nThis version of<br />

ClamAV is vulnerable to multiple denial of service (DoS) attacks when handling<br />

malformed files. An attacker exploiting this flaw would only need the ability to send an<br />

email to the vulnerable system. Successful exploitation would result in the application<br />

crashing.<br />

Solution: Upgrade to version 0.91.2 or higher.<br />

CVE-2007-4560<br />

Potential SPAM Server Detection<br />

<strong>PVS</strong> ID: 4184 FAMILY: SMTP Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: The remote server is forwarding email in a manner consistent with many SPAM/UCE<br />

servers. The SMTP header that triggered this alert was\n%P\n\n<strong>PVS</strong> observed the computer<br />

connecting to a remote SMTP server and attempting to send an email that was denied for<br />

the reason denoted above.<br />

Solution: Ensure that this email server is authorized to send SPAM/UCE emails.<br />

CVE Not available<br />

Potential SPAM Server Detection<br />

<strong>PVS</strong> ID: 4185 FAMILY: SMTP Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: The remote server is forwarding email in a manner consistent with many SPAM/UCE<br />

servers. The SMTP header that triggered this alert is\n%L<br />

realtimeonly<br />

Solution: Ensure that this email server is authorized to send SPAM/UCE emails.<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1087

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!