27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

CVE-2008-3122<br />

RMI Registry Detection<br />

<strong>PVS</strong> ID: 4583 FAMILY: Generic RISK: INFO NESSUS ID:22227<br />

Description: Synopsis :\n\nAn RMI registry is listening on the remote host.\n\nThe remote host is<br />

running an RMI registry, which acts as a bootstrap naming service for registering and<br />

retrieving remote objects with simple names in the Java Remote Method Invocation (RMI)<br />

system. This server is managed and monitored by the Sun Jconsole system at IP: %L<br />

Solution: Ensure that only valid clients are allowed to connect to the management ports of this server.<br />

CVE Not available<br />

Firebird Database < 2.1.1.17910 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4584 FAMILY: Database<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to multiple attack vectors.\n\nThe remote host<br />

seems to be running a Firebird database server version '%L'.\n\nThis version of Firebird is<br />

vulnerable to a number of flaws. While the details of the flaws are currently unknown, the<br />

vendor has addressed the issues. It is believed that an attacker exploiting these flaws would<br />

be able to gain access to confidential data and/or cause the database to crash.<br />

Solution: Upgrade to version 2.1.1.17910 or higher.<br />

CVE Not available<br />

phpBB < 3.0.2 Multiple Information Disclosure Vulnerabilities<br />

<strong>PVS</strong> ID: 4585 FAMILY: CGI<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote host is missing a critical security patch or<br />

upgrade.\n\nAccording to its banner, the remote host is running a version of phpBB that is<br />

vulnerable to several flaws. While the vendor has not released specific information<br />

regarding the flaws, it is believed that an attacker would be able to redirect valid phpBB<br />

users to malicious sites. The reported version of phpBB was: \n %L \n<br />

Solution: Upgrade to version 3.0.2 or higher.<br />

CVE Not available<br />

Java Remote Management Platform Plaintext Password Detection<br />

<strong>PVS</strong> ID: 4586 FAMILY: Generic<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Family Internet Services 1199

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!