The file /_ncl_items.shtml or /_ncl_subjects.shtml exists on the
remote web server.
If the remote host is a Tektronix printer, then this page
allows anyone to reconfigure it without any authentication
An attacker may use this flaw to conduct a denial of service
attack against your business by preventing legitimate users
from printing their work, or against your network, by changing
the IP address of the printer so that it conflicts with the IP
address of your file server.
Solution : Contact Tektronix for a patch and filter incoming
traffic to this port
Risk factor : Low
BugTraq ID: 2659|
Common Vulnerability Exposure (CVE) ID: CVE-2001-0484
Bugtraq: 20010425 Tektronix (Xerox) PhaserLink 850 Webserver Vulnerability (NEW) (Google Search)
XForce ISS Database: tektronix-phaserlink-webserver-backdoor(6482)
|Copyright||This script is Copyright (C) 2001 Renaud Deraison|
|This is only one of 74190 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.