<?xml version="1.0" encoding="UTF-8"?>

<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns="http://purl.org/rss/1.0/">

<channel rdf:about="http://www.tenablesecurity.com/">
  <title>The Passive Vulnerability Scanner (PVS) Plugins</title>
  <link>http://www.tenablesecurity.com/tenable_plugins.pdf</link>
  <description>All the newest security checks for the Tenable Passive Vulnerability Scanner (PVS)</description>
  <image rdf:resource="http://www.tenablesecurity.com/images/RssLogo.jpg" />
  <items>

    <rdf:Seq>
<rdf:li rdf:resource="http://www.tenablesecurity.com/4637.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4636.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4635.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4634.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4633.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4632.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4631.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4630.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4629.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/4628.html" />

    </rdf:Seq>

  </items>
</channel>

<image rdf:about="http://www.tenablesecurity.com/images/RssLogo.jpg">
<title>PVS Plugins</title>
<url>http://www.tenablesecurity.com/images/RssLogo.jpg</url>
<link>http://www.tenablesecurity.com/</link>
</image>

<item rdf:about="http://www.tenablesecurity.com/4637.html">
<title>Kayako SupportSuite &lt; 3.30.01 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote web server contains a PHP application affected by several vulnerabilities.<br><br>The remote host is running Kayako SupportSuite, a web-based electronic support portal written in PHP.  According to its banner, the version of Kayako installed on the remote host is earlier than 3.30.01 and, as such, affected by several issues:<br><br>  - There is a blind SQL injection issue in the staff panel that enables a staff user to gain administrative access.<br>  - A user may be able to inject arbitrary script into a user's browser by opening a ticket or requesting a chat if they include the script in the 'Full Name' field associated with their account.<br>  - There are numerous cross-site scripting issues.  For your information, the reported version of SupportSuite is:<br>%L<br><br><br><br>CVSS Base Score : 4.3<br>CVSS2#AV:N/AC:M/Au:N/C:N/I:P/A:N
<br /><br />See also :<br />
<br />
<a href="http://www.gulftech.org/?node=research&article_id=00123-08092008" target="_blank">http://www.gulftech.org/?node=research&article_id=00123-08092008</a><br />
<br />
Solution :<br />
<br />
Upgrade to Kayako SupportSuite 3.30.01 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=34029" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=34029</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4637.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4636.html">
<title>Kayako SupportSuite version detection</title>
<description><![CDATA[<br />
The remote host is running Kayako SupportSuite version: %L
<br /><br />
Solution :<br />
<br />
<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4636.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4635.html">
<title>SQL Worm client detection</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host has been compromised and is running a 'Backdoor' program<br><br>The remote host appears to be infected with a SQL worm.  The worm is attempting to spread via other web servers.  The observed network traffic from this machine was:<br>%L <br><br><br>CVSS Base Score : 10.0<br>CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
<br /><br />
Solution :<br />
<br />
Manually examine and clean the host.  <br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4635.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4634.html">
<title>Opera &lt; 9.52 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote host contains a web browser that is affected by several issues.<br><br>The version of Opera installed on the remote host is earlier than 9.52 and thus reportedly affected by several issues :<br><br>  - Specially-crafted URLs could start Opera in a way that would allow execution of arbitrary code.<br>  - Invalid checking of what frames a site can change, allowing a website to open pages from other sites.<br>  - An unspecified cross-site scripting issue.<br>  - Custom shortcuts and menu commands may pass parameters created from uninitialized memory.<br>  - Secure sites loading insecure content in a frame will cause Opera to incorrectly display the padlock icon.<br>  - Feed sources can link to a user's local disk, and appropriate javascript can detect if these files exist or not.<br>  - The page address may be changed when a user subscribes to a newsfeed subscription using the feed subscription button.<br><br><br>CVSS Base Score : 9.3<br>CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
<br /><br />See also :<br />
<br />
<a href="http://www.opera.com/docs/changelogs/windows/952" target="_blank">http://www.opera.com/docs/changelogs/windows/952</a><br />
<br />
Solution :<br />
<br />
Upgrade to Opera version 9.52 or later. <br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=33949" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=33949</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4634.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4633.html">
<title>Cisco Secure Access Control Server Detection</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote web server is part of an access policy control platform.<br><br>The remote host appears to be running Cisco Secure Access Control Server, an access policy control platform, on this port.  It is used to centrally manage access to network resources. 
<br /><br />See also :<br />
<br />
<a href="http://www.cisco.com/en/US/products/sw/secursw/ps2086/index.html" target="_blank">http://www.cisco.com/en/US/products/sw/secursw/ps2086/index.html</a><br />
<br />
Solution :<br />
<br />
Limit incoming traffic to this port if desired. <br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=33942" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=33942</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4633.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4632.html">
<title>Attachmate Reflection for Secure IT UNIX server &lt; 7.0 SP1 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote SSH service is affected by multiple vulnerabilities.<br><br>The version of Attachmate Reflection for Secure IT UNIX server installed on the remote host is less than 7.0 SP1 and thus reportedly affected by several issues :<br><br>  - There is an inherited vulnerability in OpenSSL when parsing malformed ASN.1 structures leading to a denial-of-service vulnerability (CVE-2006-2937).<br>  - There is an inherited vulnerability in OpenSSL when parsing parasitic public keys leading to a denial-of-service vulnerability (CVE-2006-2940).<br>  - There is an inherited vulnerability in OpenSSL when performing Montgomery multiplication, leading to a side-channel attack vulnerability (CVE-2007-3108).<br>  - There is an inherited vulnerability in OpenSSH with the execution of the ~/.ssh2/rc session file (CVE-2008-1657).<br>  - There is an issue with the security of forwarded X11 connections, leading to possible hijacking. (CVE-2008-1483)<br>  - There are multiple unspecified other vulnerabilities.<br>For your information, the reported version of SSH is:<br>%L<br><br><br><br>CVSS Base Score : 10.0<br>CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
<br /><br />See also :<br />
<br />
<a href="http://support.attachmate.com/techdocs/2374.html#Security_Updates_in_7.0_SP1" target="_blank">http://support.attachmate.com/techdocs/2374.html#Security_Updates_in_7.0_SP1</a><br />
<br />
Solution :<br />
<br />
Upgrade to Attachmate Reflection for Secure IT UNIX server 7.0 SP1.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=33948" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=33948</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2937" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2937</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2940" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2940</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3108" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3108</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1657" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1657</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1483" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1483</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4632.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4631.html">
<title>RhinoSoft Serv-U web server version detection</title>
<description><![CDATA[<br />
The remote host is running the RhinoSoft Serv-U web server.  Serv-U web server is typically installed as part of a suite of products which enables file sharing on a remote server.  The installed version number is:<br>%L
<br /><br />
Solution :<br />
<br />
<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4631.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4630.html">
<title>Serv-U &lt; 7.2.0.1 Denial of Service Vulnerability</title>
<description><![CDATA[<br />
Synopsis :<br><br>The remote FTP server is affected by a denial of service vulnerability.<br><br>The remote host is running Serv-U File Server, an FTP server for Windows.  The installed version of Serv-U is earlier than 7.2.0.1 and thus reportedly contains an SFTP bug in which directory creation and logging SFTP commands could lead to an application crash.  For your information, the reported version number is:<br>%L<br><br><br><br>CVSS Base Score : 5.0<br>CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P
<br /><br />See also :<br />
<br />
<a href="http://www.serv-u.com/releasenotes" target="_blank">http://www.serv-u.com/releasenotes</a><br />
<br />
Solution :<br />
<br />
Upgrade to Serv-U version 7.2.0.1 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=33937" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=33937</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4630.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4629.html">
<title>RhinoSoft Serv-U FTP server version detection</title>
<description><![CDATA[<br />
The remote host is running the RhinoSoft Serv-U FTP server.  Serv-U is typically installed as part of a suite of products which enables file sharing on a remote server.  The installed version number is:<br>%L
<br /><br />
Solution :<br />
<br />
<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4629.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/4628.html">
<title>Reflections SSH server version detection</title>
<description><![CDATA[<br />
The remote host is running a Reflections for Secure IT SSH server version:<br>%L
<br /><br />
Solution :<br />
<br />
<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2007]]></description>
<dc:date>2008-08-28T06:10:00-05:00</dc:date>
<link>http://www.tenablesecurity.com/4628.html</link>

</item>


</rdf:RDF>
