27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

CVE Not available<br />

PHP < 5.2.5 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4281 FAMILY: Web Servers RISK: HIGH NESSUS ID:28181<br />

Description: The remote web server uses a version of PHP that is affected by multiple flaws. According<br />

to its banner, the version of PHP installed on the remote host is older than 5.2.5. Such<br />

versions may be affected by various issues, including but not limited to several buffer<br />

overflows. The reported version of PHP is: \n %L<br />

Solution: Upgrade to version 5.2.5 or higher.<br />

CVE-2007-4887<br />

Oracle Web Listener Version Detection<br />

<strong>PVS</strong> ID: 4282 FAMILY: Web Servers RISK: INFO NESSUS ID:Not Available<br />

Description: The remote server is running the Oracle Web Listener application version '%L'<br />

Solution: N/A<br />

CVE Not available<br />

TestLink < 1.7.1 Authorization Mechanism Failure<br />

<strong>PVS</strong> ID: 4283 FAMILY: CGI RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw that allows authenticated attackers to<br />

gain access to the account data of other users.\n\nThe remote host is running TestLink, an<br />

application testing suite written in PHP. The reported version number is '%L'\nThis version<br />

is reported vulnerable to a flaw in the 'userview.php' script. Specifically, an authenticated<br />

user would be able to view and modify the accounts of other users.<br />

Solution: Upgrade to version 1.7.1 or higher.<br />

CVE-2007-6006<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Mac OS X < 10.4.11 Multiple Vulnerabilities (<strong>Security</strong> Update 2007-008)<br />

<strong>PVS</strong> ID: 4284 FAMILY: Operating System Detection RISK: HIGH NESSUS ID:28212<br />

Description: Synopsis :\n\nThe remote host is missing a Mac OS X update that fixes a security<br />

issue.\n\nThe remote host is running a version of Mac OS X 10.4 that is older than version<br />

10.4.11 or a version of Mac OS X 10.3 that does not have <strong>Security</strong> Update 2007-008<br />

applied. This update contains several security fixes for the following programs :\n\n\n -<br />

Flash Player Plugin\n - AppleRAID\n - BIND\n - bzip2\n - CFFTP\n - CF<strong>Network</strong>\n -<br />

CoreFoundation\n - CoreText\n - Kerberos\n - Kernel\n - remote_cmds\n - <strong>Network</strong>ing\n -<br />

NFS\n - NSURL\n - Safari\n - <strong>Security</strong>Agent\n - WebCore\n - WebKit<br />

Family Internet Services 1114

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!