27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: Synopsis :\n\nThe remote host is vulnerable to a buffer overflow.\n\nThe remote BadBlue<br />

web server has a bug in the way it processes long 'GET' requests. An overly long request<br />

results in a buffer overflow that would give a remote attacker the abillity to execute<br />

arbitrary commands as the SYSTEM user.<br />

Solution: Upgrade to version 2.60 or higher.<br />

CVE-2005-0595<br />

phpBB < 2.0.13 Cookie Authentication Bypass<br />

<strong>PVS</strong> ID: 2658 FAMILY: CGI RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a flaw that allows for the<br />

bypassing of authentication.\n\nThe remote host is running phpBB, a<br />

web-based forum application written in PHP. There is a flaw in this version of<br />

phpBB that will allow a remote attacker to bypass the login process.<br />

Specifically, a malformed cookie, when processed by phpBB, will always result<br />

in a 'true' value.<br />

Solution: Upgrade to version 2.0.13 or higher.<br />

CVE-2005-0614<br />

Policy - WebMod Gaming HTTP Server Detection<br />

<strong>PVS</strong> ID: 2659 FAMILY: Web Servers RISK: LOW NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is running software that should be authorized with<br />

respect to corporate policy.\n\nThe remote host is running WebMod. WebMod is<br />

a web server that is used in popular online games (such as Half-Life). WebMod is<br />

the administrative interface to the currently-running game. The existence of<br />

WebMod indicates that there is a game server currently serving up game<br />

scenarios.<br />

Solution: Ensure that this sort of gaming is in alignment with corporate policies and guidelines.<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

WebMod < 0.48 HTTP Server 'Content-Length' Heap Overflow<br />

<strong>PVS</strong> ID: 2660 FAMILY: Web Servers RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a heap overflow.\n\nThe remote<br />

host is running WebMod. WebMod is a web server that is used in popular online<br />

games (such as Half-Life). WebMod is the administrative interface to the<br />

currently-running game. This version of WebMod is vulnerable to a remote heap<br />

overflow. The flaw is in the way that WebMod handles large 'Content-Length'<br />

HTTP headers.<br />

Family Internet Services 680

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!