27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Lotus Domino < 7.0.2 FP3 Unspecified DoS<br />

<strong>PVS</strong> ID: 4339 FAMILY: SMTP Servers RISK: HIGH NESSUS ID:29925<br />

Description: Synopsis :\n\nThe remote host has an application that is affected by a denial of service<br />

vulnerability.\n\n The version of Lotus Domino on the remote host appears to be older than<br />

7.0.2 FP3. According to IBM, such versions are potentially affected by an unspecified<br />

denial of service issue (SPR #WRAY6WHTCC).<br />

Solution: Upgrade to version 7.0.2 FixPack3 or higher.<br />

CVE-2008-0243<br />

Sun Java System Identity Manager Version Detection<br />

<strong>PVS</strong> ID: 4340 FAMILY: CGI RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running Sun Java System Identity Manager version %L<br />

Solution: Ensure that you are running the latest version of Identity Manager.<br />

CVE Not available<br />

Sun Java System Identity Manager XSS<br />

<strong>PVS</strong> ID: 4341 FAMILY: CGI<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a Cross-Site Scripting (XSS) attack.\n\nThe<br />

remote host is running Sun Java System Identity Manager. The reported version (%L) is<br />

vulnerable to multiple cross-site scripting (XSS) attacks. An attacker exploiting these flaws<br />

would be able to inject script code into the browsers of other clients of the Identity<br />

Manager. Successful exploitation could result in the loss of confidential client data.<br />

Solution: Upgrade or patch according to vendor recommendations.<br />

CVE-2008-0241<br />

netOctopus Agent Detection (UDP)<br />

<strong>PVS</strong> ID: 4342 FAMILY: Generic RISK: INFO NESSUS ID:29930<br />

Description: Synopsis :\n\nAn asset management agent is listening on the remote host.\n\n The remote<br />

service is a netOctopus Agent, the component of the netOctopus asset management<br />

software suite installed on individual computers.<br />

Solution: Filter incoming traffic to this port.<br />

CVE Not available<br />

netOctopus Server Detection (UDP)<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1131

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!