This help file contains descriptions of 97 vulnerabilities. These vulnerabilities are listed by category in the following table. You can also view this list of vulnerabilities by risk level or search for a particular vulnerability in the index.
Internet Scanner Vulnerabilities by Category
Category: |
Vulnerabilities: |
Browser |
|
DCOM |
|
Daemons |
|
E-mail |
|
LDAP |
|
NT Patches |
IIS CGI Overflow |
IIS can be remotely crashed by excessively long client requests |
MsrpcLsaLookupnamesDos |
Windows NT Local Security Authority (LSA) can be remotely crashed, requiring a system reboot |
NT Help Overflow |
Windows NT 4.0 help file utility contains a locally exploitable buffer overflow |
NT RAS Overflow |
Windows NT RAS client contains an exploitable buffer overflow |
NT SNMPAgent Leak |
Windows NT SNMP agent has a serious memory leak |
NTKnownDLLsList |
Windows NT 4.0 domain caching feature can be exploited to gain administrator privileges |
NTSP4AuthError |
Windows NT 4.0 SP4 could allow null passwords to be used for access |
NTScreenSaver |
Windows NT screen saver can be used to compromise admin privileges |
NTginaPaste |
Windows NT gina flaw allows some clipboard text to be revealed |
NTnprpcDoS |
Windows NT RPC services can be used to deplete system resources |
NtCsrssDos |
Windows NT CSRSS denial of service attack |
NtMalformedImageHeader |
Windows NT can be crashed by executables containing malformed image headers |
RRASIncomingStop |
RRAS under stress stops responding to incoming calls |
RRASPasswordFix |
RRAS caches security credentials when using Dial-up Networking client |
Snork DoS |
Windows NT "snork" attack can disable machines |
|
Network Sniffers |
|
RPC |
|
Router/Switch |
|
SNMP |
|
Shares |
|
NT Patches |
Apache cookie |
Apache cookies buffer overflow |
Aspdot check |
IIS ASP dot bug |
Convert Check |
Novell Convert.bas web server script vulnerability |
DATA bug |
IIS ASP DATA bug in Windows NT-based web servers |
Handler Check |
IRIX handler CGI allows remote command execution |
ScriptAlias |
ScriptAlias directive allows remote CGI script access |
Uploader |
WebSite 1.1 uploader vulnerability |
Webdist |
SGI Webdist CGI script allows remote command execution |
Websendmail |
WebGais websendmail allows remote command execution |
WinSample |
WebSite 1.1 for Windows NT winsample vulnerability |
Wrap Check |
SGI IRIX cgi-bin wrap directory listing vulnerability |
aspsource |
IIS ASP dot bug |
httpd |
HTTP (WWW server) port active |
httppassword |
HTTP basic authorization password guessed |
iiscmd |
Win32 web servers could allow remote command execution through .CMD and .BAT files |
noindex |
Web server directories without an index file |
rootdotdot |
Root dot dot |
unreslink |
HTTP server with unresolvable local links |
|