Nessus scan on AS 10.1.2.0.2 gives HIGH vulnarabilities

Anyone run into "nessus" scan problems with AS?
I have SSL enabled AS using SSLConfigTool and "nessus" gives below when Secuity scans the server. I have applied the Jan07 CPU to this AS.
Any advise, greatly appreciated.
Scan Results:
nv-video (4444/tcp)
It was possible to kill the HTTP proxy by
sending an invalid request with a too long header
A cracker may exploit this vulnerability to make your proxy server
crash continually or even execute arbitrary code on your system.
Solution: upgrade your software
Risk Factor : High
CVE : CVE-2002-0133, CVE-2002-0133
BID : 3904, 3905, 3904
Other references : OSVDB:6804
Plugin ID : 11715
It was possible to kill the web server by
sending an invalid request with a too long HTTP 1.1 header
(Accept-Encoding, Accept-Language, Accept-Range, Connection,
Expect, If-Match, If-None-Match, If-Range, If-Unmodified-Since,
Max-Forwards, TE, Host)
A cracker may exploit this vulnerability to make your web server
crash continually or even execute arbirtray code on your system.
Solution: upgrade your software or protect it with a filtering reverse proxy

Anyone run into "nessus" scan problems with AS?
I have SSL enabled AS using SSLConfigTool and "nessus" gives below when Secuity scans the server. I have applied the Jan07 CPU to this AS.
Any advise, greatly appreciated.
Scan Results:
nv-video (4444/tcp)
It was possible to kill the HTTP proxy by
sending an invalid request with a too long header
A cracker may exploit this vulnerability to make your proxy server
crash continually or even execute arbitrary code on your system.
Solution: upgrade your software
Risk Factor : High
CVE : CVE-2002-0133, CVE-2002-0133
BID : 3904, 3905, 3904
Other references : OSVDB:6804
Plugin ID : 11715
It was possible to kill the web server by
sending an invalid request with a too long HTTP 1.1 header
(Accept-Encoding, Accept-Language, Accept-Range, Connection,
Expect, If-Match, If-None-Match, If-Range, If-Unmodified-Since,
Max-Forwards, TE, Host)
A cracker may exploit this vulnerability to make your web server
crash continually or even execute arbirtray code on your system.
Solution: upgrade your software or protect it with a filtering reverse proxy

Similar Messages

  • NAC Nessus scanning

    Is there a list of the most common plugins used for Nessus scanning in NAC?
    Thanks . . .

    I did figure it out at the end of the day yesterday. I should have posted then. It turned out to be a layer 8 issue on my part. I had the plugins selected for All and Windows_All was pointing to All but my individual Windows selections, like WindowsXP, where not pointing to the Windows_All so it was working but just didn't have anything selected. Thank you for your reply, Jonathan. These message boards have proven to be a big help.

  • CiscoWorks Nessus scan yellow vulnerability issue

    Hi,
    Nessus scan reports yellow Vulnerability for our CiscoWorks server:
    x.x.x.x (ip address of CiscoWorks server) YELLOW Sybase ASA Client Connection Broadcast Remote
    Information Disclosure Locate service enabled on Sybase server
    sybaseanywhere 2638
    If anyone knows the status for this issue, please let me know.
    We have the following CiscoWorks products and version:
    (LMS 2.6)
    CiscoWorks Common Services 3.0.6
    Campus Manager 4.0.6
    CiscoView 6.1.5
    Device Fault Manager 2.0.11
    Internetwork Performance 2.6.0
    Resource Manager Essentials 4.0.5
    Your help would be greatly appreciated.
    Thanks.
    GY (Gongyuan Yao)
    Contractor (LHC Network Support)
    [email protected] 301-435-3168(o)
    240-417-1488 (c)

    This is CSCsk35018:
    http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCsk35018
    The following two discussions will shed additional light on top of what the Bug Tool provides:
    http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&forum=Network%20Infrastructure&topic=Network%20Management&CommCmd=MB%3Fcmd%3Dpass_through%26location%3Doutline%40^1%40%40.2cc0b896/4#selected_message
    http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&forum=Network%20Infrastructure&topic=Network%20Management&topicID=.ee71a02&fromOutline=&CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.2cbec487

  • NAC Appliance & Nessus Scanning

    Hi All,
    In the process of getting our NAC appliance setup moved into a production level. We have everything working up to getting Nessus scanning working. I'm a bit confused by the documentation. It appears as though Nessus scanning only applys to web login users... is this correct? The doc shows activating Nessus vulnerability handling under General Setup -> Web Login. I don't see anywhere how to enable it for an agent environment. I have a setup where our test user is placed into the proper roles, and I have selected a Nessus vulnerabilty for that role. I never see the scan happen though. It's as if the agent isn't required to go through vulnerability scanning before being placed into his or her role. Is that correct? Thanks in advance for any help!
    -Mike

    Paul,
    Good to hear from you. I have been rather busy and I'm hoping to get some time in the near future to get the blog updated. The CMPC program I wrote has been quite popular with nearly 400 downloads so far.
    Back to the issue of Nessus scans. We're looking good, getting scans done now on the agent side. But I'm trying to test by enabling the TFTP server detected plugin. I have it setup as seen in the attachment. When I test against the workstation, it shows that it detected the TFTP server running. But, when the user logs in with the agent and is placed in that same role, they never are notified they are vulnerable. Why is that?
    Thanks for the help so far!
    -Mike
    http://cs-mars.blogspot.com

  • I need to scan wirelessly from a MAC (OS 1.7 or higher) through Adobe Acrobat Pro X (or higher).  Have discovered that all in one printers say they are MAC compatible but will only scan when connected with a USB cable.  Would prefer a laser, color, all in

    I need to scan wirelessly from a MAC (OS 1.7 or higher) through Adobe Acrobat Pro X (or higher).  Have discovered that all in one printers say they are MAC compatible but will only scan when connected with a USB cable.  Would prefer a laser, color, all in one.  Does anyone have printer suggestions that you know will scan wirelessly?

    Great information.  
    -------------How do I give Kudos? | How do I mark a post as Solved? --------------------------------------------------------

  • ACAS Nessus scans of Cisco devices

    Hello, we have an ACAS configuration with Security Center and Nessus scanner running on RHEL 5.10.
    Our infrastructure consists of WS-6509, WS-3750X's, G's and some old E's.
    We configured Nessus scanner with the proper Username/Password/Enable Password combinations.
    At this time it will scan one 3750 switch but none of the other 130 devices.
    If I attempt to ssh into a device from Nessus server it fails either a connection refusal from the device on port 22 or it doesn't like the cipher choices.
    I checked the switch that it does access against the others and found ip ssh authentication-retries 4 was configured and some SNMP settings that don't exist in the switches that can't be scanned.
    Anyone have this issue?
    ej

    Hello,
    You may find useful Pretty Good Terminal http://www.prettygoodterminal.com which has recently been published. This software is more about device management (via ssh/telnet) in large scales and through several jump server hops, than a terminal application. It was developed by me when I was given a task to configure more than 50000 CPE routers.So this software is a response to a real challenge and it is a good fit to collect device information.
    Regards,
    Laszlo

  • CSS and Nessus Scans (SSH vulernability)

    I have a CSS 11503 running 8.20.3.03. I have performed a Nessus vulnerability scan against the CSS. The scans have shown vulnerabilities against SSH. It is reporting that we need to upgrade to OpenSSH version 5.0 or later.
    If I upgrade to 8.20.5.01 will that address this issue? I looked thru the caveats for the other code versions and I do not see that being addressed as an issue or a fix.
    If not is there something else I can do address this issue?
    Any help would be appreciated.

    Cesar,
    The scans identified a few vulnerabilities,
    CVE-2002-0639
    CVE-2002-0640
    CVE-2003-0682
    CVE-2003-0693
    CVE-2003-0695
    CVE-2002-0575
    CVE-2002-0083
    CVE-2003-0386
    CVE-2008-1483
    I noticed that you state that 8.20.5.01 runs OpenSSH_3.0.2p1. This is the same SSH that 8.20.3.03 is reporting. So upgrading does not look to be a solution.
    Side note I am not leveraging the Web NS function. I just SSH or console into the CSS.

  • NAC - How to troubleshooting network scanning not working

    I'm testing Cisco NAC agentless in-bound layer2 mode following the CAM manual:
    •Configure the Quarantine Role
    •Load Nessus Plugins into the Clean Access Manager Repository,
    •Configure General Setup,
    •Apply Plugins,
    •Configure Plugin Options,
    •Configure Vulnerability Handling,
    •Test Scanning (I can successfully "test from Manager" from "test" tab)
    I'm sure I disabled personal firewall on the testing client on untrusted vlan.
    When I using a testing PC to open a browser to access internet, I was redirected to the authentication pape, after login, I got unlimited access. The problem is It looks CAS did not do any scan to the PC as expected according to the policy I defined for "unauthenticated" role, there is no any scan report poped up.
    1.Any way I can check if Nessus Scanning is working properly on CAS?
    2.Any log or evidence I can check to make sure the scanning start, in process, complete , so I can know the status.
    3.How to check all plugin already pushed and sycronized by CAM?
    Thanks in advance

    Following links may help you
    http://www.cisco.com/en/US/products/ps6128/products_tech_note09186a0080545b62.shtml
    http://www.cisco.com/en/US/docs/security/nac/profiler/configuration_guide/217/p_integration.html#wp1055771

  • Problem in Using scanned .pdf format files

    I have an old (5-6 years old) Canon N670U flat bed scanner.  I use it for scanning books of my interest.  It can give each page/document  scan in pdf format directly.  However each scan becomes a separate file lthough serially numbered while scanning.  When I want to read the pages, Next/Previous page or pages Up/Down etc. - reader tools available in Acrobat Reader are not operative.
        I need to go back to each scan file separately.  Also, most of the time, image needs to be rotated.  Though I do it in view mode, it does not get saved in corrected mode-even if I go to "file" and click on "save as".  At each fresh visit, this has to be repeated.
        Present driver of the scanner is version 4. I did get your version 7 downloaded.  But could not install & use it.  Is it necessary that old version first must be uninstalled and only then I can install the new version?  Is it not automatic?  It might have to copy new and remove old software files.
        What should be done that all these individual files (of a single bok) can be combined into a single meaningful folder, with availability/access to all Adobe Reader Tools.  Will be grateful for advice..

    Sharadshankar wrote:
    I need to go back to each scan file separately.  Also, most of the time, image needs to be rotated.
    This needs to be done during the scanning process, using your CanoScan software.  Once the file is saved unrotated, you will need some additional software to do that (Acrobat), so better do it during the scanning process.
    Use the Rotate clockwise / counterclockwise buttons on your scanning software.

  • Pixma MG2520 error message when trying to scan

    Every time I try to scan a picture with my Pixma MG2520 it gives me the error message "You do not have the required privileges to access the specified folder. Code:9,244,3" It was working fine when I first bought it 10 days ago and I scanned about 700 pictures. Now this error code keeps coming up every time that I click on "Photo Scan". I am using Windows 8.1 on an Asus laptop. When this code came up last time I just took the printer cartridges out and put them back in and it worked fine, but this time that did not work. I do not use my printer for printing, I only use it for scanning. What can I do??

    Hi xloriricex, Please try scanning and then saving your images to a different folder. Does the error persist?

  • Hp officejet pro 8600 : doesn't scan to computer with new OS

    When I purchased my new computer (HP envy 700) I thought I was happy with it.  THen it stopped working with my old HP printer because the software didn't match up due to "age" according to help desk.  So I bought a new HP printer, the jet pro 8600.  And low and behold this also does not work with my computer because of the operating system.  They (help desk)  set me up to use the online HP WEbScan.  But today I am working at home, and now that site doesn't work.  HOW can I use the scan option on the new printer if nothing is compatible? HELP i want to use my products they way the box says they are supposed to be able to be used!
    More info it is the latest 8.1 operating system for windows, and I tried using the HP print and scan doctor 4.5 and the message it gives me looks like this:
    well I guess it wont copy and paste the error message, it says calltodrivepackageinstallreturned error then a bunch of numbers and a webaddress.
    Very frstrated PLEASE HELP!!

    Hi @teacherbethany,
    Welcome to the HP Forums!
    I am sorry for the frustration you are having, with not being able to scan, on your HP Officejet pro 8600. But I am happy to help you get scanning again!
    For further assistance, I will need to know the following:
    If the printer is connected, Wireless, Ethernet, or USB.
    If the printer is able to make copies.
    If the power cable is plugged into a surge protector, or directly to the wall outlet. Issues when Connected to an Uninterruptible Power Supply/Power Strip/Surge Protector. This applies to Inkjet printers as well. 
    In the meantime, please try the solutions within this scanning guide, A 'Connection Error' or 'No Computer Detected' Error Message Displays during Scanning.
    Hope this guide will help, and hope to hear from you soon!
    RnRMusicMan
    I work on behalf of HP
    Please click “Accept as Solution ” if you feel my post solved your issue, it will help others find the solution.
    Click the “Kudos Thumbs Up" to say “Thanks” for helping!

  • PSC 2355 all in one stopped printing after windows 8.1 upgrade scan is OK.

    I have a HP psc2355 printer which was working happliy in Window 8. I downloaded and installed 8.1 from windows store and the printer no longer works!
    With  the printer status window open (via the windows control panel) the document detail appear briefly after clicking on the print button. Nothing happens at the printer end. Theres nothing wrong with the printer as I can use it on another PC without problems.
    I have uninstalled and re-installed the printer using hppiw 2012-10-31 and run the HP Print and Scan Doctor V 4.1.0.29 which gives a device error "your printer is in a busy state" after any attempt is made to print  from applications or from printer/properties print test page.
    printer self test prints OK.
    scanner works OK
    Printer is connected via USB cable rirectly to PC USB port
    windows update ran this morning
    3 hours wasted so far!
    This question was solved.
    View Solution.

    ****SOLVED*** Printer Properties Advanced Tab Print Processor Change settings from Print Processor hpzpplhn to winprint check Default data type is at RAW Printing OK now HP got any support jobs going?

  • My scanner keeps scanning in jpeg instead of pdf. What do I need to do?

    When I go to scan documents my scanner has started to scan as jpegs instead of pdf. I've tried several times to switch it back to pdf. It works while I finish my scans but the next time I go to scan more documents it goes back to jpeg. Where do I go and what do I check or uncheck to keep it scanning as pdf?

    Hi,
    Select scan DOCUMENT rather than PHOTO, it will scan af pdf file(s). My suggestion: scan from printer software (on your computer) will give your more choices.
    Regards.
    BH
    **Click the KUDOS thumb up on the left to say 'Thanks'**
    Make it easier for other people to find solutions by marking a Reply 'Accept as Solution' if it solves your problem.

  • Optimize Scanned PDF Options

    Hi
    I am scanning large A1 documents as colour PDFs and I need to reduce the filesize and also clean up the image by removing all the background noise in the image but keeping the detail. I used the optimize pdf function on the old version of Acrobat I had which was 7. Now I am upgraded to 10 these options are no longer working for me. I am not getting a reduced filesize and I no longer get a nice white background when optimizing. It seems a few crucial options are missing from the settings in Acrobat 7. Background removal is set to high but it just isn't working. For now I am stuck with using the reduce filesize save option which doesn't reduce it enough or remove the background noise. Can anyone help?
    Steve

    These are the settings from Acrobat 7 I am trying to replicate:
    Images Tab: Nothing Enabled
    Scanned Pages Tab: Optimize compression of pages - Ticked (Full High Quality Setting)
    Deskew - Automatic
    Background Removal - High
    Edge Shadow Removal - Cautious
    Despeckel - Medium
    Descreen - Automatic
    Halo Removal - On
    Fonts Tab: Nothing Enabled
    Transparency Tab: Flatten Transparency - NOT Ticked
    Discard Objects Tab: Discard All Alternate Images - Ticked
    Clean Up Tab: Object Compression Options - Compress Document Structure selected
    Use Flate to encode streams that are not encoded - Ticked
    In streams that use LZW encoding, use Flate instead - Ticked
    Remove invalid bookmarks - Ticked
    Remove invalid links - Ticked
    Remove unreferenced named destinations - NOT Ticked
    Optimize the PDF for fast web view - Ticked

  • Change scan resolution from HP Scan App iMac

    I use the HP SCAN app to scan from my Photosmart.  I like it because it lets me crop to constrained size.  However, it seems to scan only at 200 DPI.  I want a higher scan resolution.  I know how to change it through System Preferences, but HP SCAN does not use those settings. How to I adjust the scan resolution from WITHIN HP SCAN application?

    OK, from the HP Scan software click the Scan button.From there click the Down arrow () or the Show Details button to view and change any scan settings, including the scan resolution.   

Maybe you are looking for

  • Loaded itunes 7 but will not open

    hi i have loaded successfully version 7 of itunes but it keeps coming up with an error report. no error code number, just keeps asking to send error report or don't send error report. If i click on an itunes song the same thing happens. Please help D

  • Macbook Air 13" (Oct 2010) Locks up when connecting external display

    Since I installed Lion my Macbook Air needs to be restarted nearly every time I connect an external display.   This did not happen prior to Lion and wondering if anyone has a solution. Details: - 13" Macbook Air (October 2010 version) - Dell 27" LCD

  • How to create a Java Client from a wsdl file...

    Hi, I am looking for an available option for calling a Cobol unit from a Java application( front end). I've used the MicroFocus tool for creating a wsdl file from our Cobol unit.. Now i want to use this wsdl file for creating a Java Client.. Can any

  • MS Communicator: what is it and how to configure i...

    Got the latest update for my C6-01 and now there is also something called Microsoft Communicator. Did try to find some info and found it but still not sure what this app does? Also, how to configure it? Things to put in are username, password, URL CW

  • Java Preferences won't launch.

    After installing java 6, I can no longer run JavaPreferences, it fails to launch with the message "A static initializer of the main class threw an exception: java.lang.NullPointerException.. my JAVA_HOME is 1.5.0.. the symlinks appear ok (but i'm no