27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

CVE Not available<br />

ESET Anti-Virus Version Detection<br />

<strong>PVS</strong> ID: 5013 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: The remote client is running the ESET Anti-virus engine. The version information of the<br />

signature database and the core engine are: \n %L<br />

Solution: N/A<br />

CVE Not available<br />

Avira Anti-Virus Version Detection<br />

<strong>PVS</strong> ID: 5014 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: The remote client is running the Avira Anti-Virus engine. The version information of the<br />

signature database and the core engine are: \n %L<br />

Solution: N/A<br />

CVE Not available<br />

Avira Anti-Virus Zip File Scan Evasion<br />

<strong>PVS</strong> ID: 5015 FAMILY: Web Clients<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote host is missing a critical security patch or upgrade.\n\nThe<br />

remote client is running the Avira Ant-Virus engine. The version information of the<br />

signature database and the core engine are: \n %L \n\nThis version of the Avira scan engine<br />

is vulnerable to a flaw wherein attackers can bypass the scan engine by submitting files<br />

within specially formatted 'ZIP' archives. An attacker, exploiting this flaw, would be able to<br />

pass malicious code through the scan engine.<br />

Solution: Upgrade to Avira scan engine 8.2.0.148/7.9.0.148<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

IBM Tivoli Storage Manager < 5.2.5.4/5.3.6.6/5.4.2.7/5.5.2 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 5016 FAMILY: CGI RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote host is vulnerable to multiple attack vectors\n\nThe remote host<br />

is running the IBM Tivoli Storage Manager version: \n %L \n\nThis version of TSM is<br />

reported vulnerable to multiple remote buffer overflows. An attacker, exploiting these<br />

flaws, would be able to execute arbitrary code on the remote system. In addition, the<br />

application is vulnerable to a flaw wherein attackers may be able to access confidential data<br />

on the remote system. Lastly, a vulnerability exists wherein attackers can execute<br />

man-in-the-middle attacks against the Windows and AIX SSL client. \n<br />

Family Internet Services 1327

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!