27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: The remote Apache server is running a version of mod_ssl which is older than 2.8.7. There<br />

is a bug in this module which may allow an attacker to obtain a shell on this host.<br />

Solution: Upgrade to mod_ssl 2.8.7 or higher.<br />

CVE-2002-0082<br />

Monkey HTTP Daemon < 0.6.2 POST Request Remote Overflow<br />

<strong>PVS</strong> ID: 1514 FAMILY: Web Servers RISK: HIGH NESSUS ID:11544<br />

Description: The remote host is running a version of Monkey which contains a bug in the way it handles<br />

POST requests. An attacker may exploit this flaw to execute arbitrary code.<br />

Solution: Upgrade to Monkey HTTP Daemon 0.6.2 or higher.<br />

CVE-2003-0218<br />

OpenSSL Private Key Disclosure<br />

<strong>PVS</strong> ID: 1515 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:11267<br />

Description: The remote host is running a version of OpenSSL which is vulnerable to a timing attack<br />

which may allow an attacker to recover the content of fixed data blocks and even<br />

eventually the RSA private key of the web server.<br />

Solution: Upgrade to OpenSSL 0.9.6i or 0.9.7a<br />

CVE-2003-0131<br />

Oracle WebCache Server < 2.0.0.3.x Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 1516 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:10808<br />

Description: The remote host is running a version of the OracleWebCache server which may be disable<br />

remotely by an attacker by sending a malformed request to it. The remote server is running<br />

: %L<br />

Solution: Upgrade to version 2.0.0.3.x or newer<br />

CVE-2002-0102<br />

Resin < 2.1s020604 MS-DOS Device Path Disclosure<br />

<strong>PVS</strong> ID: 1517 FAMILY: Web Servers<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

RISK:<br />

MEDIUM<br />

NESSUS ID:11048<br />

Family Internet Services 390

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!