27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: Synopsis :\n\nThe remote host is vulnerable to an HTTP splitting attack.\n\nThere is a flaw<br />

in the remote phpAdNew/phpPgAds PHP Ads server, a banner management and tracking<br />

system written in PHP. This version of phpAdNew/phpPgAds is vulnerable to a HTTP<br />

response splitting vulnerability. An attacker exploiting this flaw would be able to redirect<br />

users to another site to steal their credentials.<br />

Solution: Upgrade to version 2.0.2 or higher.<br />

CVE Not available<br />

BitTorrent P2P Protocol Detection<br />

<strong>PVS</strong> ID: 2576 FAMILY: Peer-To-Peer File Sharing RISK: LOW NESSUS ID:Not Available<br />

Description: The remote host is running the BitTorrent P2P protocol.<br />

Solution: N/A<br />

CVE Not available<br />

BitTorrent P2P Client Detection<br />

<strong>PVS</strong> ID: 2577 FAMILY: Peer-To-Peer File Sharing<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: The remote host is running the following BitTorrent Peer-to-Peer (P2P) Client: %L \n\n<br />

BitTorrent is a protocol for exchanging files in a P2P file-sharing network.<br />

Solution: Ensure that the trading of files over a peer-to-peer network is within the Acceptable Use<br />

Policy.<br />

CVE Not available<br />

BitTorrent P2P Server Detection<br />

<strong>PVS</strong> ID: 2578 FAMILY: Peer-To-Peer File Sharing RISK: LOW NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is running client software that may be considered<br />

questionable.\n\nThe remote host is running a BitTorrent Peer-to-Peer (P2P) Server.<br />

BitTorrent is a protocol for exchanging files in a P2P file sharing network. The BitTorrent<br />

Server is a system that is offering files for download from BitTorrent Clients.<br />

Solution: Ensure that the trading of files over a Peer-to-Peer network is within corporate guidelines<br />

and Acceptable Use Policies. You should further ensure that the BitTorrent Server is not<br />

trafficking any confidential or copyrighted materials.<br />

CVE Not available<br />

SmarterMail Attachment Upload XSS<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 2579 FAMILY: CGI RISK: LOW NESSUS ID:16281<br />

Family Internet Services 657

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!