27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

RISK:<br />

MEDIUM<br />

Description: Synopsis : \n\nThe remote web server hosts a web application that is vulnerable to multiple<br />

attack vectors.\n\nThe remote web server hosts Liferay Portal, a web portal for building<br />

business solutions. For your information, the observed version of Liferay Portal installed on<br />

the remote host is : \n %L \n\nVersions of Liferay Portal earlier than 6.0.6 are potentially<br />

affected by multiple vulnerabilities : \n\n - An unspecified command execution<br />

vulnerability exists in the portlet 'XSL content'. (LPS-14726)\n\n - An arbitrary file<br />

disclosure vulnerability exists in XXE. (LPS-14927)\n\n - It is possible to read arbitrary<br />

XSL and XML files on the remote host via the 'file: ///' path. (LPS-13762)\n\n - An<br />

unspecified cross-site scripting vulnerability may exist. (LPS-11506)\n\n - A cross-site<br />

scripting vulnerability exists in message board search. (LPS-12628)<br />

Solution: Upgrade to Liferay Portal 6.0.6 or later.<br />

CVE Not available<br />

Web Server Pornographic Material Detected<br />

<strong>PVS</strong> ID: 5861 FAMILY: Policy<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: The remote server is serving pornographic materials. The observed request<br />

was:\n%P\n\nThe observed response from the web server was\n%L\n<br />

Solution: Ensure that the content on this webserver is in compliance with the standards and policies<br />

regarding web content.<br />

CVE Not available<br />

Web Server Pornographic Material Detected<br />

<strong>PVS</strong> ID: 5862 FAMILY: Policy<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: The remote server is serving pornographic materials. The observed request<br />

was:\n%P\n\nThe observed response from the web server was\n%L\n<br />

Solution: Ensure that the content on this webserver is in compliance with the standards and policies<br />

regarding web content.<br />

CVE Not available<br />

Web Server Pornographic Material Detected<br />

<strong>PVS</strong> ID: 5863 FAMILY: Policy<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Family Internet Services 1592

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!