27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Solution: Microsoft has released a set of patches for Publisher 2000, XP, 2003 and 2007:<br />

CVE-2008-0119<br />

Windows Defender Client Detection<br />

<strong>PVS</strong> ID: 4503 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the Microsoft Defender software. Defender is used to protect<br />

the local system from malware.<br />

Solution: Ensure that you are running the latest version of this software<br />

CVE Not available<br />

Altiris Deployment Solution < 6.9.176 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4504 FAMILY: Generic RISK: HIGH NESSUS ID:32323<br />

Description: Synopsis :\n\nThe remote Windows host has a program that is affected by multiple<br />

vulnerabilities.\n\nThe version of the Altiris Deployment Solution installed on the remote<br />

host reportedly is affected by several issues :\n\n - A SQL injection vulnerability that could<br />

allow a user to run arbitrary code\n - A remote attacker may be able to obtain encrypted<br />

Altiris Deployment Solution domain credentials without authentication.\n - A local user<br />

could access a privileged command prompt via the Agent's user interface.\n - A local user<br />

could leverage a GUI tooltip to access a privileged command prompt.\n - A local user can<br />

modify or delete several registry keys used by the application, resulting in unauthorized<br />

access to system information or disruption of service.\n - A local user with access to the<br />

install directory of Deployment Solution could replace application components, which<br />

might then run with administrative privileges on an affected system.<br />

Solution: Upgrade to Altiris Deployment Solution 6.9.176 or later and update Agents.<br />

CVE-2008-2291<br />

Cross-Domain Policy File (crossdomain.xml) Detection<br />

<strong>PVS</strong> ID: 4505 FAMILY: CGI RISK: INFO NESSUS ID:32318<br />

Description: Synopsis :\n\nThe remote web server contains a 'crossdomain.xml' file.\n\nThe remote web<br />

server contains a cross-domain policy file. This is a simple XML file used by Adobe's Flash<br />

Player to allow access to data that resides outside the exact web domain from which a Flash<br />

movie file originated. The file resides on the webserver in the following directory: %P<br />

Solution: Review the contents of the policy file carefully. Improper policies, especially an<br />

unrestricted one with just '*', could allow for cross-site request forgery and cross-site<br />

scripting attacks against the web server.<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1176

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!