Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.12221
Categoría:Web application abuses
Título:3Com NBX VoIP NetSet Detection (HTTP)
Resumen:We have discovered that 3Com NBX VOIP NetSet is running; on the remote host. 3Com NBX VoIP NetSet's web server is powered by VxWorks.
Descripción:Summary:
We have discovered that 3Com NBX VOIP NetSet is running
on the remote host. 3Com NBX VoIP NetSet's web server is powered by VxWorks.

Vulnerability Insight:
The web server is known to contain vulnerabilities that
would allow a remote attacker to cause a denial of service against the product by simply
running a port scanning/vulnerability scanning engine against it.

Affected Software/OS:
Problems have been observed in Netset 4.2.7, but previous
4.1 versions seem to be ok.

Solution:
No known solution was made available for at least one year since the disclosure
of this vulnerability. Likely none will be provided anymore. General solution options are to upgrade to a newer
release, disable respective features, remove the product or replace the product by another one.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: BugTraq ID: 10240
Common Vulnerability Exposure (CVE) ID: CVE-2004-1977
http://www.securityfocus.com/bid/10240
Bugtraq: 20040429 3com NBX VOIP NetSet Denial of Service Attack (Google Search)
http://marc.info/?l=bugtraq&m=108334887408554&w=2
http://www.secnap.net/security/20040420.html
http://secunia.com/advisories/11504
http://archives.neohapsis.com/archives/vulnwatch/2004-q1/0092.html
XForce ISS Database: 3com-nbx-scan-dos(16015)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16015
CopyrightCopyright (C) 2004 Noam Rathaus

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.