Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:10665
Category:CGI abuses
Title:tektronix's _ncl_items.shtml
Summary:NOSUMMARY
Description:Description:

The file /_ncl_items.shtml or /_ncl_subjects.shtml exists on the
remote web server.
If the remote host is a Tektronix printer, then this page
allows anyone to reconfigure it without any authentication
means whatsoever.

An attacker may use this flaw to conduct a denial of service
attack against your business by preventing legitimate users
from printing their work, or against your network, by changing
the IP address of the printer so that it conflicts with the IP
address of your file server.

Solution : Contact Tektronix for a patch and filter incoming
traffic to this port
Risk factor : Low

Cross-Ref: BugTraq ID: 2659
Common Vulnerability Exposure (CVE) ID: CVE-2001-0484
Bugtraq: 20010425 Tektronix (Xerox) PhaserLink 850 Webserver Vulnerability (NEW) (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2001-04/0482.html
XForce ISS Database: tektronix-phaserlink-webserver-backdoor(6482)
https://exchange.xforce.ibmcloud.com/vulnerabilities/6482
CopyrightThis script is Copyright (C) 2001 Renaud Deraison

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.