27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Solution: Upgrade to OpenOffice version 3.1.1 or later.<br />

CVE-2009-0201<br />

Opera < 10.00 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 5146 FAMILY: Web Clients<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:40827<br />

Description: Synopsis : \n\nThe remote host is vulnerable to multiple attack vectors.\n\nThe version of<br />

Opera installed on the remote host is earlier than 10.00 and thus potentially affected by<br />

multiple issues : \n\n - The collapsed Address bar can in some cases temporarily show the<br />

previous domain of the present site. (930)\n\n - Certificates which use a wild card<br />

immediately before the top level domain, or nulls in the domain name, may pass validation<br />

checks in Opera. (934)\n\n - Some Unicode characters are treated incorrectly which might<br />

cause international domain names that use them to be shown in the wrong format. Showing<br />

these addresses in Unicode instead of punycode could allow for limited address spoofing.<br />

(932)\n\n - Opera does not check the revocation status for intermediate certificates not<br />

served by the server. (929)\n\nFor your information, the reported version of Opera is: \n<br />

%L<br />

Solution: Upgrade to Opera 10.00 or later.<br />

CVE Not available<br />

SquirrelMail < 1.4.20 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 5147 FAMILY: CGI<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to cross-site request forgery.\n\nThe remote<br />

host is running SquirrelMail, a web-based email client. The installed version of<br />

SquirrelMail is potentially affected by cross-site request forgery vulnerabilities on all form<br />

submissions. For your information, the installed version of SquirrelMail is:%L<br />

Solution: Upgrade to SquirrelMail 1.4.20 RC1 or later.<br />

CVE-2009-2964<br />

Sybase SQL-Anywhere Database Server Detection<br />

<strong>PVS</strong> ID: 5148 FAMILY: Database RISK: INFO NESSUS ID:Not Available<br />

Description: The remote server is running the Sybase SQL-Anywhere database server<br />

Solution: N/A<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1368

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!