27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

CVE Not available<br />

Kerio MailServer / Connect < 7.0.1 Administration Console File Disclosure and File Corruption<br />

Vulnerability<br />

<strong>PVS</strong> ID: 5561 FAMILY: SMTP Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:47140<br />

Description: Synopsis :\n\nThe remote mail server is vulnerable to a file disclosure and corruption<br />

vulnerability.\n\nFor your information, the observed version of Kerio Mail Server /<br />

Connect is %L.\n\nVersions of Kerio Mail Server / Connect earlier than 7.0.1 are<br />

potentially affected by a file disclosure and corruption vulnerability. An attacker, with full<br />

administrative rights, can modify the administrative console to change the product<br />

configuration to read or corrupt arbitrary files on the server.<br />

Solution: Upgrade to Kerio Connect 7.0.1 or later.<br />

CVE Not available<br />

nginx 8.3 Filename Alias Request Access Rules / Authentication Bypass<br />

<strong>PVS</strong> ID: 5562 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw which allows attackers to retrieve<br />

sensitive files or data\n\nFor your information, the observed version of nginx is<br />

%L.\n\nVersions of nginx earlier than 0.7.65 are potentially affected by a security bypass<br />

vulnerability. By appending %20 to a requested file, an attacker can view the source code<br />

of potentially sensitive scripts.<br />

Solution: Upgrade to nginx 0.7.65 or later.<br />

CVE Not available<br />

OpenSSL Version Detection<br />

<strong>PVS</strong> ID: 5563 FAMILY: Web Servers RISK: INFO NESSUS ID:Not Available<br />

Description: N/A<br />

Solution: N/A<br />

CVE Not available<br />

OpenOffice < 3.2.1 Multiple Vulnerabilities<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 5564 FAMILY: Generic RISK: HIGH NESSUS ID:46814<br />

Family Internet Services 1490

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!