27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Solution: Upgrade to Movable Type 5.02 or later.<br />

CVE Not available<br />

Drupal AutoAssign Role Module < 6.x-1.2 Authentication Bypass<br />

<strong>PVS</strong> ID: 5536 FAMILY: Web Servers RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw which allows for the bypassing of<br />

Authentication\n\nThe remote host is running an older version of the Drupal AutoAssign<br />

Role module. The reported version of AutoAssign Role is %L\n\nThere is a flaw in this<br />

version of AutoAssign which would allow a valid user to access controls and data which<br />

belong to another user.<br />

Solution: Upgrade to Drupal AutoAssign Role 6.x-1.2.<br />

CVE Not available<br />

Drupal Services Module < 6.x-2.1 Authentication Bypass<br />

<strong>PVS</strong> ID: 5537 FAMILY: Web Servers RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw which allows for the bypassing of<br />

Authentication\n\nThe remote host is running an older version of the Drupal Services<br />

module. The reported version of Services is %L\n\nThere is a flaw in this version of<br />

Services which would allow a valid user to access controls and data which belong to<br />

another user.<br />

Solution: Upgrade to Drupal Services 6.x-2.1<br />

CVE Not available<br />

Microsoft Group Policy Client Detection<br />

<strong>PVS</strong> ID: 5538 FAMILY: Samba RISK: INFO NESSUS ID:Not Available<br />

Description: The remote client is a Microsoft Group Policy client.<br />

Solution: N/A<br />

CVE Not available<br />

Konqueror < 4.4.3 Multiple Vulnerabilities<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 5539 FAMILY: Web Clients RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to multiple attack vectors\n\nThe remote host<br />

is running Konqueror version '%L'\n\nThis version of Konqueror shipped with an<br />

application called 'Kget' which is prone to a security-bypass flaw as well as a<br />

directory-traversal flaw. An attacker would need to be able to entice a user into browsing to<br />

Family Internet Services 1483

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!