11.07.2015 Views

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

790 <strong>Improving</strong> <strong>Web</strong> <strong>Application</strong> <strong>Security</strong>: <strong>Threats</strong> <strong>and</strong> CountermeasuresThe advantage of the GUI is that the report is opened immediately after scanning thelocal computer. More details on interpreting the report are explained later in thissection.Using the Comm<strong>and</strong> Line (Mbsacli.exe)To use the comm<strong>and</strong> line tool (Mbsacli.exe) to check for security updates <strong>and</strong> patches,run the following comm<strong>and</strong> from a comm<strong>and</strong> window. This scans the specifiedcomputer with the supplied IP address <strong>and</strong> checks for missing updates:mbsacli /i 192.168.195.137 /n OS+IIS+SQL+PASSWORDA successful scan produces results similar to those shown below:Scanning...[ ] 0 o[..........] 1 of 1 computer scan(s) complete.Scan Complete.Computer Name, IP Address, Assessment, Report Name-----------------------------------------------------Workgroup\SECNETSQL, 192.168.195.137, Severe Risk, Workgroup - SECNETSQL (04-07-2003 03-01 PM)You can view the report by using Mbsacli.exe, but is not recommended since it iseasier to extract patch details using the GUI. The comm<strong>and</strong> below allows you to viewa scan report using Mbsacli.exe:mbsacli /ld "<strong>Security</strong>ReportFile.xml"Analyzing the OutputA report file is generated in the profile directory of the logged in user(%userprofile%), on the computer from where you ran the Mbsacli.execomm<strong>and</strong>. The easiest way to view the results of those reports is by usingthe GUI mode of MBSA.Scanning Multiple Systems for Updates <strong>and</strong> PatchesYou can also use MBSA to scan a range of computers. To do so, use the /r comm<strong>and</strong>line switch as shown below.mbsacli /r 192.168.195.130-192.168.195.254 /n OS+IIS+SQL+PASSWORDThe above comm<strong>and</strong> scans all computers in the range 192.168.195.130 to192.168.195.254.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!