27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: The remote web server (SimpleServer:WWW) contains a bug which may allow an attacker<br />

to disable it.<br />

Solution: Upgrade to SimpleServerWWW 1.2 or higher.<br />

CVE-2000-0243<br />

thttpd < 2.05 If-Modified-Since Header Overflow<br />

<strong>PVS</strong> ID: 1522 FAMILY: Web Servers RISK: HIGH NESSUS ID:10285<br />

Description: The remote web server contains a buffer overflow in the portion of its code which<br />

processes the argument of the header 'If-Modified-Since'. By supplying a malformed<br />

argument to this header, an attacker may be able to execute arbitrary code on this host, with<br />

the privileges of the web server.<br />

Solution: Upgrade to thttpd 2.05 or higher.<br />

CVE-2000-0359<br />

Squid < 2.4.STABLE6 Multiple Overflows<br />

<strong>PVS</strong> ID: 1523 FAMILY: Web Servers RISK: HIGH NESSUS ID:10923<br />

Description: The remote squid caching proxy, according to its version number, is vulnerable to various<br />

buffer overflows. An attacker may use these to gain a shell on this system. It was<br />

determined that you are running %L<br />

Solution: Upgrade to squid 2.4.STABLE6 or higher.<br />

CVE-2002-0068<br />

Squid Proxy mkdir-only PUT Request DoS<br />

<strong>PVS</strong> ID: 1524 FAMILY: Web Servers<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:10768<br />

Description: The remote squid caching proxy may be disabled remotely by any user by sending it a<br />

malformed 'mkdir-only' PUT request.<br />

Solution: Upgrades and a patch are available for multiple platforms.<br />

CVE-2001-0843<br />

BEA WebLogic < 5.1.0 SP8 Hex-encoded Request JSP Source Disclosure<br />

<strong>PVS</strong> ID: 1525 FAMILY: Web Servers<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

RISK:<br />

MEDIUM<br />

NESSUS ID:10715<br />

Family Internet Services 392

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!