27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: Synopsis :\n\nThe remote host passes information across the network in an insecure<br />

manner.\n\nThe remote host has just passed an encryption private key via plaintext on the<br />

network. This is a risk in that private keys should only reside on a local system and if they<br />

must be passed, they should be encrypted in transit.<br />

Solution: Ensure that there are policies and guidelines in place that prohibit the passing of<br />

private encryption data in plaintext.<br />

CVE Not available<br />

Encryption Private Key Detection (RSA)<br />

<strong>PVS</strong> ID: 3780 FAMILY: Data Leakage RISK: LOW NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host passes information across the network in an insecure<br />

manner.\n\nThe remote host has just passed an encryption private key via plaintext on the<br />

network. This is a risk in that private keys should only reside on a local system and if they<br />

must be passed, they should be encrypted in transit.<br />

Solution: Ensure that there are policies and guidelines in place that prohibit the passing of<br />

private encryption data in plaintext.<br />

CVE Not available<br />

Encryption Private Key Detection (RSA)<br />

<strong>PVS</strong> ID: 3781 FAMILY: Data Leakage RISK: LOW NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host passes information across the network in an insecure<br />

manner.\n\nThe remote host has just passed an encryption private key via plaintext on the<br />

network. This is a risk in that private keys should only reside on a local system and if they<br />

must be passed, they should be encrypted in transit.<br />

Solution: Ensure that there are policies and guidelines in place that prohibit the passing of<br />

private encryption data in plaintext.<br />

CVE Not available<br />

Encryption Private Key Detection (DSA)<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 3782 FAMILY: Data Leakage RISK: LOW NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host passes information across the network in an insecure<br />

manner.\n\nThe remote host has just passed a DSA encryption private key via plaintext on<br />

the network. This is a risk in that private keys should only reside on a local system and if<br />

they must be passed, they should be encrypted in transit.<br />

Solution: Ensure that there are policies and guidelines in place that prohibit the passing of<br />

private encryption data in plaintext.<br />

Family Internet Services 977

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!