27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Description: The remote host is running Yahoo! Messenger version %L.<br />

Solution: Ensure this software meets corporate guidelines for employee use.<br />

CVE Not available<br />

Finger Service Detection<br />

<strong>PVS</strong> ID: 1276 FAMILY: Finger<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:10069<br />

Description: The remote host seems to be running a finger daemon. This service provides valuable<br />

information to remote attackers, and should be disabled.<br />

Solution: Edit /etc/inetd.conf and comment out the finger line, or refer to your operating system<br />

manual for more information.<br />

CVE-1999-0612<br />

Finger Service Detection<br />

<strong>PVS</strong> ID: 1277 FAMILY: Finger<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:10069<br />

Description: The remote host seems to be running a finger daemon. This service provides valuable<br />

information to attackers, and should be disabled.<br />

Solution: Edit /etc/inetd.conf and comment out the finger line, or refer to your operating system<br />

manual for more information.<br />

CVE-1999-0612<br />

cfingerd Service Detection<br />

<strong>PVS</strong> ID: 1278 FAMILY: Finger RISK: NONE NESSUS ID:10651<br />

Description: The remote host is running CFINGERd. We could determine that the version run is : %L<br />

Solution: Consider disabling this service if not required for system functionality.<br />

CVE Not available<br />

cfingerd < 1.4.4 Multiple Vulnerabilities<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 1279 FAMILY: Finger RISK: HIGH NESSUS ID:10652<br />

Description: Synopsis :\n\nThe remote host is vulnerable to multiple issues\n\nThe remote cfinger server<br />

is vulnerable to a format string attack that may allow an attacker execute arbitrary<br />

command on this host. In addition, cfingerd has been found to be vulnerable to privilege<br />

escalation and overflow attacks.<br />

Family Internet Services 326

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!