27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Apple iPhone/iPad OS < 4.3 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 5814 FAMILY: Mobile Devices RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to multiple attack vectors.\n\nThe remote host<br />

is an iPhone, iPod Touch, or iPad running iOS. For your information, the observed version<br />

of iOS is %L.\n\nVersions of iOS earlier than 4.3 are potentially affected by multiple<br />

vulnerabilities. iOS 4.3 contains security fixes for the following products :\n\n -<br />

CoreGraphics\n\n - ImageIO\n\n - libxml\n\n - <strong>Network</strong>ing\n\n - Safari\n\n - WebKit\n\n -<br />

Wi-Fi<br />

Solution: Upgrade to iOS 4.3 or later.<br />

CVE-2011-0192<br />

Dropbox Client Retrieval Detection<br />

<strong>PVS</strong> ID: 5815 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: Dropbox is a service to allow the transfer of large files which often cannot (or should not)<br />

be transferred via email. The remote host retrieved the following file from dropbox.com :<br />

%L<br />

Solution: N/A<br />

CVE Not available<br />

Apache Tomcat 7.0.x < 7.0.11 <strong>Security</strong> Bypass Vulnerability<br />

<strong>PVS</strong> ID: 5816 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:52634<br />

Description: Synopsis : \n\nThe remote web server is affected by security bypass vulnerability.\n\nFor<br />

your information, the observed version of Apache Tomcat installed on the remote host is :<br />

\n %L \n\nVersions of Tomcat 7.0.x earlier than 7.0.11 are potentially affected by a<br />

security bypass vulnerability. When a web application is started, 'Servlet<strong>Security</strong>'<br />

annotations might be ignored which could lead to some areas of the application not being<br />

protected as expected.<br />

Solution: Upgrade to Apache Tomcat 7.0.11 or later.<br />

CVE-2011-1419<br />

Facebook Chat Client Detection<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 5817 FAMILY: Internet Services RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running the Facebook chat application.<br />

Solution: Ensure this software meets corporate guidelines for employee use.<br />

Family Internet Services 1579

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!