11.07.2015 Views

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

792 <strong>Improving</strong> <strong>Web</strong> <strong>Application</strong> <strong>Security</strong>: <strong>Threats</strong> <strong>and</strong> CountermeasuresAnalyzing the ScanThe resulting report will appear similar to the patch scan you performed earlier. Theonly difference is the link How to correct this will be available when issues arefound. When you click the link, a page will appear with the details of the issue found,the solution to the issue, <strong>and</strong> instructions to correct the issue.Compare the issue details against your security policy <strong>and</strong> follow the instructions ifthe issue is not addressed by your policy.Correcting Issues FoundChoose the link How to correct this. In the resulting page, the solution <strong>and</strong>instructions explain the steps that you need to take to correct the issue.Additional InformationThe following information will help you troubleshoot scanning errors or explaininconsistencies between scans.False Positives From <strong>Security</strong> Update ChecksThere may be cases where MBSA reports that an update is not installed, even afteryou complete an update or take the steps documented in a security bulletin. Thereare two reasons for these false reports:1. Files scanned were updated by an installation that is unrelated to a securitybulletin. For example, a file shared by different versions of the same program maybe updated by the newer version. MBSA is unaware of the new versions <strong>and</strong>,because it is not what is expected, it reports the update is missing.2. Some security bulletins are not addressed by a file update but a configurationchange that cannot be verified. These types of flags will appear as Note orWarning messages, marked with yellow Xs.Both must be noted <strong>and</strong> ignored for future scans.Requirements for Performing Remote ScansMBSA makes use of the following network services to scan a computer:●●●●Windows NT 4.0 SP4 <strong>and</strong> above, Windows 2000, or Windows XP (local scans onlyon Windows XP computers that use simple file sharing)IIS 4.0, 5.0 (required for IIS vulnerability checks)SQL 7.0, 2000 (required for SQL vulnerability checks)Services must be installed or enabled: Server service, Remote Registry service,File & Print Sharing

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!