27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Solution: Ensure that such usage is in alignment with Corporate policy<br />

Java version detection<br />

CVE Not available<br />

<strong>PVS</strong> ID: 6514 FAMILY: Web Clients RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running Java version : %L<br />

Solution: Ensure that you are running the latest version of Java<br />

CVE Not available<br />

MySQL Server 5.5 < 5.5.24 Multiple Unspecified Vulnerabilities<br />

<strong>PVS</strong> ID: 6515 FAMILY: Database<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:61393<br />

Description: Synopsis :\n\nThe remote database server is vulnerable to multiple attack vectors.\n\nFor<br />

your information, the observed version of MySQL Community Server is : \n %L \n\nThe<br />

version of MySQL 5.5 installed on the remote host is earlier than 5.5.24 and is, therefore,<br />

affected by the following vulnerabilities :\n\n - Several errors exist related to 'GIS<br />

Extension', 'Server', 'InnoDB' and 'Server Optimizer' components that can allow denial of<br />

service attacks. (CVE-2012-0540, CVE-2012-1734, CVE-2012-1735, CVE-2012-1756,<br />

CVE-2012-1757)\n\n - A security bypass vulnerability exists that occurs due to improper<br />

casting during user login sessions. (Bug #64884 / CVE-2012-2122)\n\n - An error exists<br />

related to key length and sort order index that can lead to application crashes. (Bug #59387<br />

/ CVE-2012-2749)<br />

Solution: Upgrade to MySQL Community Server 5.5.24 later.<br />

CVE-2012-2749<br />

MySQL Server 5.5 < 5.5.23 Multiple Unspecified Vulnerabilities<br />

<strong>PVS</strong> ID: 6516 FAMILY: Database<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:59967<br />

Description: Synopsis :\n\nThe remote database server is vulnerable to multiple attack vectors.\n\nFor<br />

your information, the observed version of MySQL Community Server is : \n %L \n\nThe<br />

version of MySQL 5.5 installed on the remote host is earlier than 5.5.23. As such, it is<br />

reportedly affected by an as yet unspecified vulnerability.<br />

Solution: Upgrade to MySQL Community Server 5.5.23 later.<br />

ActiveSync detection<br />

CVE-2012-2750<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 1780

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!