27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

CVE-2012-0677<br />

Facebook SocialCam Application Detection<br />

<strong>PVS</strong> ID: 6501 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: The remote Facebook client is utilizing the SocialCam application. SocialCam is an<br />

application that allows users to watch videos from their Facebook timeline.<br />

Solution: Ensure that such usage is in alignment with corporate policies and guidelines<br />

CVE Not available<br />

Real<strong>Network</strong>s Helix Server 14.x < 14.3.x Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 6502 FAMILY: Generic RISK: HIGH NESSUS ID:58724<br />

Description: Synopsis :\n\nThe remote media streaming server is affected by multiple<br />

vulnerabilities.\n\nAccording to its banner, the remote host is running the following version<br />

of Real<strong>Network</strong>s Helix Server / Helix Mobile Server: %L\n. Such versions are potentially<br />

affected by multiple vulnerabilities.\n\n - Administrative and user credentials are insecurely<br />

stored in a flat file database. This file may be accessed by local users to disclose passwords<br />

stored in clear text. (CVE-2012-1923)\n\n - A buffer overflow exists in the code that parses<br />

authentication credentials. It may be possible for a remote attacker to exploit this issue and<br />

execute arbitrary code. (CVE-2012-0942)\n\n - Multiple unspecified cross-site scripting<br />

vulnerabilities. (CVE-2012-1984)\n\n - A specially crafted malfored URL can cause the<br />

server process to crash if opened by an administrator. (CVE-2012-1985)\n\n - Establishing<br />

and immediately closing a TCP connection on port 705 can cause the SNMP Master Agent<br />

to crash (CVE-2012-2267)\n\n - A specially crafted Open-PDU request sent to the SNMP<br />

Master Agent can cause it to crash due to an unhandled exception.<br />

(CVE-2012-2268)\nIAVB Reference : 2012-B-0043\nSTIG Finding Severity : Category I<br />

Solution: Upgrade to Real<strong>Network</strong>s Helix Server / Helix Mobile Server 14.3.x or later.<br />

CVE-2012-2268<br />

Facebook Viddy Application Detection<br />

<strong>PVS</strong> ID: 6503 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: The remote Facebook client is utilizing the Viddy application. Viddy is an application that<br />

allows users to watch videos from their Facebook timeline.<br />

Solution: Ensure that such usage is in alignment with corporate policies and guidelines<br />

CVE Not available<br />

Facebook Viddy Application Detection<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 6504 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Family Internet Services 1776

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!