27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Microsoft SharePoint Detection<br />

<strong>PVS</strong> ID: 5047 FAMILY: Web Servers RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running a Microsoft SharePoint Server. The reported version of<br />

Microsoft SharePoint is: \n %L<br />

Solution: N/A<br />

CVE Not available<br />

Kerio MailServer < 6.6.2 Patch 3 / 6.7.0 Patch 1 XSS<br />

<strong>PVS</strong> ID: 5048 FAMILY: SMTP Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote mail server is vulnerable to cross-site scripting attacks.\n\nThe<br />

remote Kerio MailServer is earlier than 6.6.2 Patch 3 / 6.7.0 Patch 1. Such versions are<br />

reportedly affected by a cross-site scripting vulnerability in the 'Integration' page. For your<br />

information, the reported version of Kerio MailServer is : \n %L<br />

Solution: Upgrade to Kerio MailServer 6.6.2 Patch 3 / 6.7.0 Patch 1<br />

CVE-2009-2636<br />

Google Chrome < 2.0.172.31 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 5049 FAMILY: Web Clients RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host contains a web browser that is vulnerable to multiple attack<br />

vectors.\n\nThe version of Google Chrome installed on the remote host is earlier than<br />

2.0.172.31. Such versions are reportedly affected by multiple issues :\n\n - A memory<br />

corruption issue exists in the way the WebKit handles recursion in certain DOM event<br />

handlers. (CVE-2009-1690)\n\n - WebKit's handling of drag events is affected by an<br />

information disclosure vulnerability. (CVE-2009-1718)\n\nFor your information, the<br />

reported browser version is \n%L<br />

Solution: Upgrade to Google Chrome 2.0.172.31 or later.<br />

CVE-2009-1718<br />

Cisco IronPort Detection<br />

<strong>PVS</strong> ID: 5050 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running Cisco IronPort, an appliance for email and web security. Be<br />

sure that the installed version has the latest patches installed. For your information, the<br />

displayed banner is : \n %L<br />

Solution: N/A<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1338

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!