27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

affected by multiple vulnerabilities :\n\n - An error exists such that web page content can be<br />

displayed over dialog boxes leading to security warning misrepresentation. (977)\n\n - An<br />

error exists such that WAP form contents can be leaded to third-party sites. (979)\n\n - Two<br />

unspecified, high-severity vulnerabilities exists.<br />

Solution: Upgrade to Opera 11.00 or later.<br />

CVE-2010-4587<br />

HP Power Manager < 4.3.2 Buffer Overflow Vulnerability<br />

<strong>PVS</strong> ID: 5736 FAMILY: CGI RISK: HIGH NESSUS ID:51200<br />

Description: Synopsis : \n\nThe power management application installed on the remote host is<br />

vulnerable to multiple attack vectors.\n\nFor your information, the observed version of HP<br />

Power Manager is : \n %L \n\nVersions of HP Powere Manager earlier than 4.3.2 are<br />

potentially affected by a buffer overflow vulnerability because the application fails to<br />

properly sanitize user supplied in put to the 'Login' parameter of the login page. An<br />

unauthenticated, remote attacker could exploit this by sending a specially crafted HTTP<br />

request, resulting in arbitrary code execution.<br />

Solution: Upgrade to HP Power Manager 4.3.2 or later.<br />

CVE-2010-4113<br />

Android < 2.3 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 5737 FAMILY: Mobile Devices RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote host is vulnerable to multiple attack vectors.\n\nFor your<br />

information, the observed version of Android OS installed on the remote device is : \n %L<br />

\n\nVersions of Android OS earlier than 2.3 are potentially affected by multiple<br />

vulnerabilities : \n\n - A privilege escalation vulnerability exists in the Zygote/Dalvik<br />

virtual machine framework.\n\n - A denial-of-service issue exists that can cause 'dexdump'<br />

to crash.<br />

Solution: Upgrade to Android 2.3 or later.<br />

CVE Not available<br />

Stuxnet Infected Host Detection<br />

<strong>PVS</strong> ID: 5738 FAMILY: Backdoors RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host has been compromised and is running a 'Backdoor'<br />

program\n\nThe remote host is running the Stuxnet trojan. This was determined based on<br />

the RPC UUID. Stuxnet is a Trojan which uses multiple vulnerabilities to infect and spread<br />

to nearby hosts. Ultimately, the Trojan attempts to gain access to a SCADA network.<br />

Solution: Manually clean the infected machine<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1554

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!