Nessus Plugin #12233

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

eMule Plus Web Server detection

Family:
Peer-To-Peer File Sharing
Category:
infos
Copyright:
This script is Copyright (C) 2004 A.Kaverin
Summary:
Detect eMule Web Server
Version:
$Revision: 1.2 $
Cve_id:
-
Bugtraq_id:
10039
Xrefs:
-
Description:

eMule Web Server works on this port. Some versions of this P2P client
are vulnerable to a DecodeBase16 buffer overflow which would allow an
attacker to execute arbitrary code.

Thanks to Kostya Kortchinsky for his posting to bugtraq.

Known Vulnerable clients:
eMule 0.42a-d
eMule 0.30e
eMulePlus <1k

See also : http://security.nnov.ru/search/news.asp?binid=3572

* Note: This script only checks if port 4711 is open and if
it reports banner which contains string eMule. *

Solution: disable eMule Web Server or upgrade to a bug-fixed version
(eMule 0.42e, eMulePlus 1k or later)

Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.