27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Solution: Upgrade to Zabbix 1.6.7 or later.<br />

CVE Not available<br />

Zabbix < 1.6.8 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 5270 FAMILY: Generic RISK: HIGH NESSUS ID:44620<br />

Description: Synopsis : \n\nThe remote host is vulnerable to multiple attack vectors.\n\nThe remote host<br />

is running Zabbix, an IT monitoring service. The installed version of Zabbix is earlier than<br />

1.6.8. Such versions are potentially affected by multiple vulnerabilities : \n\n - A<br />

denial-of-service vulnerability in the 'zbx_get_next_field()' function. (ZBX-1355)\n\n - A<br />

SQL-injection vulnerability in the 'send_history_last_id()' function of the<br />

'zabbix_server/trapper/nodehistory.c' source file. (ZBX-1031)\n\n - It is possible for remote<br />

unatuthenticated usres to execute OS commands. (ZBX-1030)\n\nFor your information, the<br />

observed version of Zabbix is: \n %L<br />

Solution: Upgrade to Zabbix 1.6.8 or later.<br />

CVE-2009-4499<br />

Myspace Usage Detection<br />

<strong>PVS</strong> ID: 5271 FAMILY: Internet Services RISK: INFO NESSUS ID:Not Available<br />

Description: The remote client was observed logging into a myspace.com account. Myspace is a social<br />

networking site which features a personal blog, instant messaging, bulletin boards, and<br />

more. You should ensure that such behavior is in alignment with Corporate Policies and<br />

guidelines.<br />

realtime<br />

Solution: N/A<br />

CVE Not available<br />

Facebook Usage Detection<br />

<strong>PVS</strong> ID: 5272 FAMILY: Internet Services RISK: INFO NESSUS ID:Not Available<br />

Description: The remote client was observed accessing the Facebook social networking site. You should<br />

ensure that such behavior is in alignment with Corporate Policies and guidelines.<br />

realtime<br />

Solution: N/A<br />

CVE Not available<br />

YouTube Usage Detection<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1408

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!