27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

to obtain sensitive information.<br />

Solution: Contact the vendor for a patch or disable NetBIOS over TCP if it is not required.<br />

CVE-2003-0661<br />

TLSv1 Negotiation Detection<br />

<strong>PVS</strong> ID: 1923 FAMILY: Generic RISK: LOW NESSUS ID:Not Available<br />

Description: The server on this port is tunneling traffic through TLSv1.<br />

Solution: N/A<br />

Citrix Server Detection<br />

CVE Not available<br />

<strong>PVS</strong> ID: 1924 FAMILY: Generic<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:10942<br />

Description: A Citrix server is running on this machine. Citrix servers allow a Windows user to remotely<br />

obtain a graphical login (and therefore act as a local user on the remote host). If an attacker<br />

gains a valid login and password, he may be able to use this service to gain further access<br />

on the remote host.<br />

Solution: Disable this service if you do not use it. Ensure that strong encryption is being used.<br />

CVE Not available<br />

Windows Update Traffic Detection<br />

<strong>PVS</strong> ID: 1925 FAMILY: Generic RISK: LOW NESSUS ID:Not Available<br />

Description: The remote host is enabled and utilizing Microsoft Windows Update. This service<br />

allows users to check for missing updates and initiate remediation via the Microsoft<br />

update site. Depending on your individual policy, this may or may not be a desirable<br />

action.<br />

Solution: Ensure that Windows Update utilization is a valid use of company resources.<br />

CVE Not available<br />

Generic Shell Detection (HP-UX Telnet)<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 1926 FAMILY: Generic RISK: LOW NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is running an inherently insecure protocol or<br />

application.\n\nAn HP-UX shell server was noted on the host. Typically, shells are used by<br />

remote users to manage operating systems. Shells that pass traffic in plaintext introduce a<br />

risk to confidentiality and privacy. In addition, many shells are used by malicious<br />

Family Internet Services 490

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!