<?xml version="1.0" encoding="UTF-8"?>

<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns="http://purl.org/rss/1.0/">

<channel rdf:about="http://www.tenablesecurity.com/">
  <title>The Passive Vulnerability Scanner (PVS) Plugins</title>
  <link>http://www.tenablesecurity.com/tenable_plugins.pdf</link>
  <description>All the newest security checks for the Tenable Passive Vulnerability Scanner (PVS)</description>
  <image rdf:resource="http://www.tenablesecurity.com/images/RssLogo.jpg" />
  <items>

    <rdf:Seq>
<rdf:li rdf:resource="http://www.tenablesecurity.com/6300.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6299.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6298.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6297.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6296.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6295.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6294.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6293.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6292.html" />
<rdf:li rdf:resource="http://www.tenablesecurity.com/6291.html" />

    </rdf:Seq>

  </items>
</channel>

<image rdf:about="http://www.tenablesecurity.com/images/RssLogo.jpg">
<title>PVS Plugins</title>
<url>http://www.tenablesecurity.com/images/RssLogo.jpg</url>
<link>http://www.tenablesecurity.com/</link>
</image>

<item rdf:about="http://www.tenablesecurity.com/6300.html">
<title>OpenSSH &lt; 5.7 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :\n\nThe remote SSH service may be affected by multiple vulnerabilities.\n\nFor your information, the observed version of OpenSSH installed on the remote host is : \n %L \n\nVersions of OpenSSH server before 5.7 may be affected by the following vulnerabilities :\n\n  - A security bypass vulnerability because OpenSSH does not properly validate the public parameters in the J-PAKE protocol.  This could allow an attacker to authenticate without the shared secret.  Note that this issue is only exploitable when OpenSSH is built with J-PAKE support, which is currently experimental and disabled by default. (CVE-2010-4478)\n\n  - The auth_parse options function in auth-options.c in sshd provides debug messages containing authorized_keys command options, which allows remote authenticated users to obtain potentially sensitive information by reading these messages. (CVE-2012-0841)
<br /><br />See also :<br />
<br />
<a href="http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/ssh/jpake.c#rev1.5" target="_blank">http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/ssh/jpake.c#rev1.5</a><br />
<br />
Solution :<br />
<br />
Upgrade to OpenSSH version 5.7 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=44081" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=44081</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4478" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4478</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-02-01T19:31:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6300.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6299.html">
<title>Samba 3.6.x &lt; 3.6.3 Denial of Service</title>
<description><![CDATA[<br />
Synopsis :\n\nThe remote Samba server is affected by a denial of service vulnerability.\n\nFor your information, the observed version of Samba is :\n %L \n\nAccording to its banner, the version of Samba 3.6.x running on the remote host is earlier than 3.6.3.  Errors exist in the files 'source3/lib/substitute.c' and 'source3/smbd/server.c' that leak small amounts of memory when processing every connection attempt.\n\nAn attacker can continually make connections to the server and cause a denial of service attack against the affected smbd service.
<br /><br />See also :<br />
<br />
<a href="http://www.samba.org/samba/history/samba-3.6.3.html" target="_blank">http://www.samba.org/samba/history/samba-3.6.3.html</a><br />
<br />
Solution :<br />
<br />
Either apply one of the patches referenced in the project's advisory or upgrade to 3.6.3 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=57752" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=57752</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0817" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0817</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-02-01T15:28:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6299.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6298.html">
<title>PCAnywhere Detection</title>
<description><![CDATA[<br />
The remote host is running PCAnywhere, an application that allows remote users to connect to a Windows desktop and work remotely. 
<br /><br />
Solution :<br />
<br />
Ensure that you are running the latest version of PCAnywhere.<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-02-01T15:28:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6298.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6297.html">
<title>Android  2.3 &lt; 2.3.6 Information Disclosure</title>
<description><![CDATA[<br />
Synopsis :\n\nThe remote host is affected by an information disclosure vulnerability.\n\nFor your information, the observed version of Android OS installed on the remote device is : \n %L \n\nVersions of Android OS earlier than 2.3.6 are potentially affected by an information disclosure vulnerability.  The bluetooth stack used by Android 2.3 allows a physically proximate attacker to obtain contact information from a target device via AT phonebook transfer.
<br /><br />See also :<br />
<br />
<a href="http://code.google.com/p/android/issues/detail?id=21347" target="_blank">http://code.google.com/p/android/issues/detail?id=21347</a><br />
<br />
Solution :<br />
<br />
Upgrade to Android 2.3.6 or later.<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />References:<br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4276" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4276</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-01-31T15:27:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6297.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6296.html">
<title>CentOS version detection</title>
<description><![CDATA[<br />
The remote host is running CentOS version: %L.
<br /><br />
Solution :<br />
<br />
Ensure that host is up to date on security updates and in accordance to company policy.<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-01-25T17:51:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6296.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6295.html">
<title>Opera &lt; 11.61 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :\n\nThe remote host has a web browser installed that is vulnerable to multiple attack vectors.\n\nThe remote host is running the Opera web browser.  For your information, the observed version of Opera is : \n %L \n\nVersions of Opera earlier than 11.61 are potentially affected by multiple vulnerabilities :\n\n  - It is possible to manipulate framed content in a way that allows cross-site scripting. (Issue 1007)\n\n  - Script events can be used to reveal the presence of local files. (Issue 1008)
<br /><br />See also :<br />
<br />
<a href="http://www.opera.com/support/kb/view/1008" target="_blank">http://www.opera.com/support/kb/view/1008</a><br />
<br />
Solution :<br />
<br />
Upgrade to Opera 11.61 or later.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-01-25T17:51:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6295.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6294.html">
<title>Google Chrome &lt; 16.0.912.77 Multiple Vulnerabilities</title>
<description><![CDATA[<br />
Synopsis :\n\nThe remote host contains a web browser that is vulnerable to multiple attack vectors.\n\nFor your information, the observed version of Google Chrome is :\n %L \n\nVersions of Google Chrome earlier than 16.0.912.77 are potentially affected by multiple vulnerabilities :\n\n  - Use-after-free errors exist related to DOM selections, DOM handling, and Safe Browsing functionality. (CVE-2011-3924, CVE-2011-3925, CVE-2011-3928)\n\n  - A heap-based buffer overflow exists in the 'tree builder'. (CVE-2011-3926)\n\n  - An error exists related to an uninitialized value in 'Skia'. (CVE-2011-3927)
<br /><br />See also :<br />
<br />
<a href="http://googlechromereleases.blogspot.com/2012/01/stable-channel-update_23.html" target="_blank">http://googlechromereleases.blogspot.com/2012/01/stable-channel-update_23.html</a><br />
<br />
Solution :<br />
<br />
Upgrade to Google Chrome 16.0.912.77 or later.<br />
<br />
Risk factor :<br />
<br />
HIGH<br /><br />References:<br />
<a href="http://www.nessus.org/plugins/index.php?view=single&id=57666" target="_blank">http://www.nessus.org/plugins/index.php?view=single&id=57666</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3924" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3924</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3925" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3925</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3926" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3926</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3927" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3927</a><br />
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3928" target="_blank">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3928</a><br />
<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-01-25T17:51:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6294.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6293.html">
<title>Schweitzer Engineering Laboratories (SEL) Management Server Detection (SCADA) default level 1 credentials</title>
<description><![CDATA[<br />
Synopsis :\n\nThe remote SCADA device is configured with default credentials\n\nThe remote server is a SCHWEITZER ENGINEERING LABORATORIES (SEL) management server.  The server is configured with the default password of 'OTTER' for level 1 access.
<br /><br />
Solution :<br />
<br />
Change default passwords<br />
<br />
Risk factor :<br />
<br />
MEDIUM<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-01-24T11:32:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6293.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6292.html">
<title>Netwave Video server detection</title>
<description><![CDATA[<br />
Synopsis:\n\nThe remote server is used as an audio/video device.\n\nThe remote host is a Netwave video server.  The exact product name is : %L 
<br /><br />
Solution :<br />
<br />
Ensure that this service is authorized for your network<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-01-23T19:30:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6292.html</link>

</item>

<item rdf:about="http://www.tenablesecurity.com/6291.html">
<title>SIP server deteciton</title>
<description><![CDATA[<br />
Synopsis:\n\nThe remote server is used as an audio/video device.\n\nThe remote host is using the Session Initiation Protocol (SIP) which is a communication protocol for video and voice calls over the Internet.   
<br /><br />
Solution :<br />
<br />
Ensure that this service is authorized for your network<br />
<br />
Risk factor :<br />
<br />
INFO<br /><br />Copyright Tenable Network Security Inc. 2012]]></description>
<dc:date>2012-01-23T15:29:00-05:00</dc:date>

<link>http://www.tenablesecurity.com/6291.html</link>

</item>


</rdf:RDF>

