27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

RISK:<br />

MEDIUM<br />

Description: Synopsis :\n\nThe remote VoIP server is vulnerable to a denial of service attack.\n\nFor<br />

your information, the observed version of Asterisk is : \n %L \n\nVersions of Asterisk 1.8.x<br />

earlier than 1.8.7.1 are potentially affected by a denial of service attack in the SIP channel<br />

driver. A remote authenticated attacker can cause a crash with a malformed request due to<br />

an uninitialized variable.<br />

Solution: Upgrade to Asterisk 1.8.7.1<br />

CVE-2011-4063<br />

ClamAV < 0.97.3 Unspecified Denial of Service<br />

<strong>PVS</strong> ID: 6044 FAMILY: Web Clients<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is running an anti-virus application that is vulnerable to a<br />

denial of service attack.\n\nThe reported version of ClamAV on the remote host is : \n %L<br />

\n\nVersions of ClamAV earlier than 0.97.3 are potentially affected by an unspecified<br />

denial of service vulnerability that can be exploited to cause the clamd daemon to crash.<br />

Solution: Upgrade to ClamAV 0.97.3 or later.<br />

CVE-2011-3627<br />

Joomla! 1.5 < 1.5.24 Information Disclosure Vulnerability<br />

<strong>PVS</strong> ID: 6045 FAMILY: CGI<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote web server has an application that is affected by an information<br />

disclosure vulnerability.\n\nThe remote web server is hosting Joomla!, a content<br />

management system written in PHP. For your information, the observed version of Joomla!<br />

is : \n %L .\n\nVersions of Joomla! 1.5.x earlier than 1.5.24 are potentially affected by an<br />

information disclosure vulnerability due to the use of weak encryption.<br />

Solution: Upgrade to Joomla! 1.5.24 or later.<br />

CVE Not available<br />

Joomla! 1.7 < 1.7.2 Multiple Information Disclosure Vulnerabilities<br />

<strong>PVS</strong> ID: 6046 FAMILY: CGI<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis : \n\nThe remote web server has an application that is vulnerable to multiple<br />

attack vectors.\n\nThe remote web server is hosting Joomla!, a content management system<br />

written in PHP. For your information, the observed version of Joomla! is : \n %L<br />

.\n\nVersions of Joomla 1.7 earlier than 1.7.2 are potentially affected by multiple<br />

Family Internet Services 1651

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!