| |||||||||||||
| Test Kennung: | 1.3.6.1.4.1.25623.1.0.11056 |
| Kategorie: | CISCO |
| Titel: | CSCdy03429 |
| Zusammenfassung: | Uses SNMP to determine if a flaw is present |
| Beschreibung: | Trivial File Transfer Protocol (TFTP) is a protocol which allows for easy transfer of files between network connected devices. A vulnerability has been discovered in the processing of filenames within a TFTP read request when Cisco IOS is configured to act as a TFTP server This vulnerability is documented as Cisco Bug ID CSCdy03429 Solution : http://www.cisco.com/warp/public/707/ios-tftp-long-filename-pub.shtml Risk factor : High *** As Nessus solely relied on the banner of the remote host *** this might be a false positive |
| Querverweis: |
BugTraq ID: 5328 Common Vulnerability Exposure (CVE) ID: CVE-2002-0813 Bugtraq: 20020727 Phenoelit Advisory, 0815 ++ * - Cisco_tftp (Google Search) http://online.securityfocus.com/archive/1/284634 Cisco Security Advisory: 20020730 TFTP Long Filename Vulnerability http://www.cisco.com/warp/public/707/ios-tftp-long-filename-pub.shtml Bugtraq: 20020822 Cisco IOS exploit PoC (Google Search) http://marc.theaimsgroup.com/?l=bugtraq&m=103002169829669&w=2 http://www.iss.net/security_center/static/9700.php http://www.securityfocus.com/bid/5328 http://www.osvdb.org/854 |
| Copyright | This script is (C) 2002 Renaud Deraison |
| Dies ist nur einer von 32582 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |
|