27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

'CON:') when using the STOU command provided he has write access to a directory.\n - An<br />

authenticated remote attacker can overwrite or create arbitrary files via a directory traversal<br />

attack in theRNTO command.\n - An authenticated remote attacker may be able to upload a<br />

file to the current Windows directory with rename by placing the destination in '\' (ie, 'My<br />

Computer').<br />

Solution: Upgrade to version 7.3.0.1 or higher.<br />

CVE-2008-4501<br />

Blue Coat Reporter Detection<br />

<strong>PVS</strong> ID: 4700 FAMILY: Web Servers RISK: INFO NESSUS ID:34334<br />

Description: Synopsis : \n\nThe remote web server is used to monitor web traffic.\n\nThe remote host is<br />

running Blue Coat Reporter, a web reporting system for monitoring centralized logs from<br />

Blue Coat appliances. This web service is used to access the application. The reported<br />

version is: \n %L<br />

Solution: Filter incoming traffic to this port if desired.<br />

CVE Not available<br />

Blue Coat Reporter Default admin Credentials<br />

<strong>PVS</strong> ID: 4701 FAMILY: Web Servers RISK: HIGH NESSUS ID:34346<br />

Description: Synopsis :\n\nThe administrative password for the remote web service can be<br />

guessed.\n\nThe remote Blue Coat Reporter is using the default credentials of 'admin' for<br />

both the username and password.<br />

Solution: Change the admin password.<br />

CVE Not available<br />

OpenNMS Server Detection<br />

<strong>PVS</strong> ID: 4702 FAMILY: Web Servers RISK: INFO NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote web server is used to monitor network devices.\n\nThe remote<br />

host is running OpenNMS, an open source network management application. This web<br />

interface is used to manage the server.<br />

Solution: Filter incoming traffic to this port if desired.<br />

CVE Not available<br />

Simple Machines Forum < 1.1.7 Incomplete BBcode Block <strong>Security</strong> Bypass<br />

<strong>PVS</strong> ID: 4703 FAMILY: CGI<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Family Internet Services 1235

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!