27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Mozilla Firefox < 1.5.0.1 Multiple Vulnerabilities<br />

<strong>PVS</strong> ID: 3405 FAMILY: Web Clients RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to multiple attack vectors.\n\nThe remote host<br />

is running an older version of the Firefox browser. The installed version of Firefox is<br />

reported to be prone to a cross-domain scripting flaw. An attacker exploiting this flaw<br />

would need to be able to convince a user to browse to a malicious URI. Successful<br />

exploitation would result in the attacker executing malicious script code within the Firefox<br />

browser. In addition, the remote browser is vulnerable to a memory corruption and<br />

authentication bypass flaw. An attacker exploiting these flaws would be able to execute<br />

arbitrary code on the remote browser or gain access to critical functions.<br />

Solution: Upgrade to version 1.5.0.1 or higher.<br />

CVE-2006-0496<br />

Computer Associates Message Queuing DoS<br />

<strong>PVS</strong> ID: 3406 FAMILY: Generic<br />

RISK:<br />

MEDIUM<br />

NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to a Denial of Service (DoS) attack.\n\nThe<br />

remote version of Computer Associates Message Queuing Service contains a flaw when<br />

handling specially crafted packets destined for port 4105. An attacker exploiting these<br />

flaws would be able to render the service unavailable.<br />

Solution: Upgrade or patch according to vendor recommendations.<br />

CVE-2006-0529<br />

L2TP VPN Client Detection<br />

<strong>PVS</strong> ID: 3407 FAMILY: Generic RISK: LOW NESSUS ID:Not Available<br />

Description: The remote host is running a L2TP VPN client.<br />

Solution: Ensure that this software is authorized and configured correctly.<br />

CVE Not available<br />

L2TP VPN Server Detection<br />

<strong>PVS</strong> ID: 3408 FAMILY: Generic RISK: LOW NESSUS ID:Not Available<br />

Description: The remote host is running a L2TP VPN server.<br />

Solution: Ensure that this software is authorized and configured correctly.<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

Family Internet Services 875

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!