27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Description: Synopsis :\n\nThe remote Ventia DeskNow server allows unauthorized access to local files<br />

and email.\n\nThe remote host is running Ventia DeskNow Mail And Collaboration Server.<br />

Ventia DeskNow allows multiple users to chat, share files, collaborate and more via a<br />

central Ventia DeskNow server. There is a flaw with the version of DeskNow that allows<br />

files to be modified on the local server, email to be tampered with, and other flaws.<br />

Solution: Upgrade or patch according to vendor recommendations.<br />

CVE-2005-0332<br />

Savant Web Server Multiple Remote Overflows<br />

<strong>PVS</strong> ID: 2587 FAMILY: Web Servers RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a buffer overflow.\n\nThe remote host is<br />

running Savant Web Server. This version of Savant is vulnerable to a remote overflow due<br />

to a long user request. An attacker exploiting this flaw would only need to be able to craft a<br />

query to the web server.<br />

Solution: No solution is known at this time.<br />

CVE-2005-0338<br />

Qualcomm Eudora < 6.2.1 Unspecified Remote Overflows<br />

<strong>PVS</strong> ID: 2588 FAMILY: SMTP Clients RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is missing a critical security patch or upgrade.\n\nThe<br />

remote host is running a version of the Eudora mail client that may be vulnerable to at least<br />

one remote buffer overflow.<br />

Solution: Upgrade to version 6.2.1 or higher.<br />

CVE Not available<br />

Mambo Content Server < 4.5.1b Detection Global Variables Overwrite<br />

<strong>PVS</strong> ID: 2589 FAMILY: Web Servers RISK: HIGH NESSUS ID:16312<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw that allows for the bypassing of<br />

authentication.\n\nThe remote host is running the Mambo Content Server, an application<br />

for generating dynamic content for web servers. The remote application is vulnerable to a<br />

flaw where remote attacks can overwrite global variables used by the application. In doing<br />

so, they can alter the way that the application operates, causing a disclosure of information<br />

or a loss of availability.<br />

Solution: Upgrade to version 4.5.1b or higher.<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 660

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!