27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: Synopsis :\n\nThe remote host relies on pseudo-random data within the authentication<br />

process.\n\nThe version of PunBB installed on the remote host is vulnerable to a password<br />

attack. There is a flaw in the way that PunBB generates random passwords and cookie<br />

seeds. An attacker exploiting this flaw would be able to run efficient brute-force attacks<br />

against passwords that had been recently reset. The root cause of this flaw seems to be the<br />

use of the PHP 'mt_rand()' function which gives, at most, 1,000,000 possible outputs.<br />

Solution: Upgrade to version 1.2.17 or higher.<br />

CVE-2008-1484<br />

Mobilink Monitor Client Detection<br />

<strong>PVS</strong> ID: 4392 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is a Sybase Mobilink Monitor client. The client is configured to monitor<br />

remote Sybase database servers.<br />

Solution: N/A<br />

CVE Not available<br />

Mobilink Monitor Server Detection<br />

<strong>PVS</strong> ID: 4393 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is a Sybase Mobilink Monitor server. The Sybase Mobilink Monitor is an<br />

application that ships with the Sybase database. The purpose of Mobilink Monitor is to<br />

allow external machines to monitor the different server processes from a remote machine.<br />

Solution: N/A<br />

CVE Not available<br />

Mobilink Monitor Server Version Detection<br />

<strong>PVS</strong> ID: 4394 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is a Sybase Mobilink Monitor server. The Sybase Mobilink Monitor is an<br />

application that ships with the Sybase database. The purpose of Mobilink Monitor is to<br />

allow external machines to monitor the different server processes from a remote machine.<br />

The reported version is: %L<br />

Solution: N/A<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

MobiLink Server < 10.0.1 Build 3649 Multiple Remote Overflows<br />

<strong>PVS</strong> ID: 4395 FAMILY: Web Clients RISK: HIGH NESSUS ID:31719<br />

Family Internet Services 1146

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!