27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

CVE Not available<br />

Drupal FileField Source Module < 6.x-1.2 Arbitrary Code Execution<br />

<strong>PVS</strong> ID: 5636 FAMILY: CGI<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote web server is hosting a web application that is vulnerable to a<br />

remote code execution attack.\n\nThe remote web server hosts a Drupal install that uses the<br />

FileField Source module. For your information, the observed version of Drupal FileField<br />

Sources module is %L.\n\nVersions of FileField Sources earlier than 6.x-1.2 are potentially<br />

affected by a remote code execution vulnerability because the application fails to properly<br />

sanitize the file extensions of files that have been transferred from remote servers.<br />

Solution: Upgrade to Drupal FileField Sources module 6.x-1.2 or later.<br />

QNX Detection<br />

CVE Not available<br />

<strong>PVS</strong> ID: 5637 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the QNX embedded Operating System.<br />

Solution: Manually inspect the service to ensure that it is patched and necessary on your network<br />

CVE Not available<br />

QNX 'debug' Service Detection<br />

<strong>PVS</strong> ID: 5638 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: A QNX 'debug' service is listening on this port.<br />

Solution: Manually inspect the service to ensure that it is patched and necessary on your network<br />

CVE Not available<br />

QNX qconn Service Detection<br />

<strong>PVS</strong> ID: 5639 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: A QNX qconn service is listening on this port.<br />

Solution: Manually inspect the service to ensure that it is patched and necessary on your network<br />

CVE Not available<br />

QCONN Version Detection<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 5640 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Family Internet Services 1517

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!