27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>PVS</strong> ID: 4713 FAMILY: FTP Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:34434<br />

Description: Synopsis : \n\nThe remote FTP server is prone to a denial of service attack.\n\nThe version<br />

of Titan FTP Server installed on the remote host goes into an unstable state when it<br />

receives a 'SITE WHO' command. An unauthenticated remote attacker can leverage this<br />

issue to deny service to legitimate users. The reported version of Titan is: \n %L<br />

Solution: Upgrade to version 6.26 build 631 or higher.<br />

CVE-2008-6082<br />

<strong>Security</strong> Center < 3.4 Multiple Unspecified Traversals<br />

<strong>PVS</strong> ID: 4714 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:34443<br />

Description: Synopsis : \n\nThe remote web server contains a PHP application that is prone to directory<br />

traversal attacks.\n\nThe version of <strong>Tenable</strong> <strong>Security</strong> Center installed on the remote host<br />

appears to be earlier than 3.4.2.1. Such versions contain two vulnerabilities that allow a<br />

user who was logged into the <strong>Security</strong> Center to obtain system files. The reported version<br />

of <strong>Security</strong> Center is: \n %L<br />

Solution: Upgrade to version 3.4.2.1 or higher.<br />

CVE Not available<br />

Opera < 9.61 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 4715 FAMILY: Web Clients<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:34459<br />

Description: Synopsis : \n\nThe remote host contains a web browser that is affected by several<br />

issues.\n\nThe version of Opera installed on the remote host is earlier than 9.61 and is<br />

reportedly affected by several issues : \n\n - It may be possible to reveal a user's browsing<br />

history by exploiting certain constructs in Opera's History Search results (903).\n - Opera's<br />

Fast Forward feature is affected by a cross-site scripting vulnerability (904). \n - While<br />

previewing certain news feeds, it may be possible for certain scripts to subscribe a user to<br />

arbitrary feeds, and also view contents of user subscribed feeds (905). The reported version<br />

of Opera is: \n %L<br />

Solution: Upgrade to version 9.61 or higher.<br />

DHCP Client Detection<br />

CVE-2008-4725<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 4716 FAMILY: Generic RISK: LOW NESSUS ID:Not Available<br />

Family Internet Services 1239

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!