27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: The remote host appears to be running a Firebird database server version %L.<br />

Solution: Ensure you are running the latest version of Firebird server.<br />

CVE Not available<br />

Firebird Database < 2.0.2 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4229 FAMILY: Database RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to multiple attack vectors.\n\nThe remote host<br />

appears to be running a Firebird database server version '%L'. This version of Firebird is<br />

vulnerable to multiple flaws that, if exploited, would give an attacker the ability to execute<br />

arbitrary code on the remote database server. In order to exploit these flaws, an attacker<br />

would need the ability to authenticate to the database server.<br />

Solution: Upgrade to the latest version of Firebird server.<br />

CVE-2007-4669<br />

Firebird Database Multiple Stack-based Overflows<br />

<strong>PVS</strong> ID: 4230 FAMILY: Database RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a buffer overflow.\n\nThe remote host<br />

seems to be running a Firebird database server version '%L'. This version of Firebird is<br />

vulnerable to stack overflows that, if exploited, would give an attacker the ability to<br />

execute arbitrary code on the remote database server.<br />

Solution: Upgrade to the latest version of Firebird server.<br />

CVE-2007-5246<br />

Blackboard Academic Suite <<br />

<strong>PVS</strong> ID: 4231 FAMILY: CGI<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to an HTML injection attack.\n\nThe remote<br />

host is running Blackboard, a web-based academic software package that allows<br />

organizations to teach students remotely. This version of Blackboard is vulnerable to<br />

multiple HTML injection flaws. An attacker exploiting these flaws would need the ability<br />

to log in as a valid user. Successful exploitation would result in the attacker gaining<br />

confidential data from other Blackboard users.<br />

Solution: Upgrade or patch according to vendor recommendations.<br />

CVE-2007-5227<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Cumulative <strong>Security</strong> Update for Microsoft Outlook Express and Windows Mail (941202)<br />

Family Internet Services 1100

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!