27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Description: Synopsis :\n\nThe antivirus product can be tricked into not scanning potentially malicious<br />

files.\n\nThe remote host is running the Kaspersky antivirus client version %L\nThis<br />

version of Kaspersky is vulnerable to a flaw where file scanning can be bypassed by<br />

passing malformed MIME-encoded requests. An attacker exploiting this flaw would be<br />

able to send malicious files through the antivirus product without being detected.<br />

Solution: Upgrade or patch according to vendor recommendations.<br />

CVE-2006-6409<br />

ClamAV < 0.88.7 MIME-encoded Scan Bypass<br />

<strong>PVS</strong> ID: 3842 FAMILY: Web Clients RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe antivirus product can be tricked into not scanning potentially malicious<br />

files.\n\nThe remote host is running the ClamAV antivirus client version %L\nThis version<br />

of ClamAV is vulnerable to a flaw where file scanning can be bypassed by passing<br />

malformed MIME-encoded requests. An attacker exploiting this flaw would be able to send<br />

malicious files through the antivirus product without detection.<br />

Solution: Upgrade to version 0.88.7 or higher.<br />

Novell Client Detection<br />

CVE-2006-5874<br />

<strong>PVS</strong> ID: 3843 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running Novell client software.<br />

Solution: N/A<br />

CVE Not available<br />

Novell Service Agent Detection<br />

<strong>PVS</strong> ID: 3844 FAMILY: Generic RISK: INFO NESSUS ID:Not Available<br />

Description: The remote host is running Novell software. In addition, the software is announcing itself<br />

on the network as a service agent.<br />

Solution: N/A<br />

CVE Not available<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

ThinClientServer < 4.0.2248 Admin Account Creation<br />

<strong>PVS</strong> ID: 3845 FAMILY: CGI RISK: HIGH NESSUS ID:23780<br />

Family Internet Services 994

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!