Your Company Scan Results - January 2008

Vulnerability Statistics

 12
 17
 15
 16
 9
 2
 3
High risk vulnerabilities found.
Medium risk vulnerabilities found.
Low risk vulnerabilities found.
SANS vulnerabilities found.
New vulnerabilities found.
Urgent vulnerabilities found.
Overdue vulnerabilities found.
 4
 5
 1
 7
 10
 3
 1
 2
Systems (31%) had high risk vulnerabilities.
Systems (38%) had medium risk vulnerabilities.
Systems (8%) had low risk vulnerabilities.
Systems (54%) had SANS vulnerabilities.
Systems (77%) had vulnerabilities.
Systems (23%) had no vulnerabilities.
Systems (8%) had urgent vulnerabilities.
Systems (15%) had overdue vulnerabilities.
Scan Type
Start Date
End Date
Systems Scanned
New Systems
Enterprise
13-Jan-08 11:54
13-Apr-08 13:47
13
3

Key Increase No change DecreaseHigh RiskMedium RiskLow RiskNo ServicesNo Ports/VulnsNot Subnet Scanned

Filter Hosts: 

 

Systems

Download As CSV...
Download As PDF...
Host NameIP AddressCriticalReportPortsVulnerabilities 
sql2.manc.yourcompany.com   SANS192.168.1.53View13
www.example.com   SANS192.168.0.112View66 (5 New)
www.yourcompany.net   SANS   URGENT   OVERDUE192.168.0.102View1116 (1 New)
www.your_company.nl   SANS192.168.0.103View94 (1 New)
dns0.example.com   SANS192.168.0.110View32 (1 New)
mail.example.com   SANS192.168.0.111View94
www.yourcompany.co.uk192.168.0.100View43
apollo.example.com   SANS   OVERDUE192.168.0.81View33
www.yourcompany.com.my   NEW192.168.0.106View11 (1 New)
www.your_company.fr192.168.0.105View72
www.your_company.de192.168.0.104View00
gopher.example.com   NEW192.168.0.93View00
laptop.yourcompany.com   NEW192.168.0.57 View00

All Vulnerabilities

FrequencyVulnerabilitySeverity 
3High Risk Ports OpenHigh Risk
2Apache < 1.3.26 Chunked Encoding Vulnerability   SANSHigh Risk
2SNMP Default Community Names   SANSHigh Risk
1IIS WebDAV Buffer OverrunHigh Risk
1MySQL Database Accessible Without Password   URGENTHigh Risk
1BIND < 8.2.3 Buffer Overrun   SANS   OVERDUEHigh Risk
1MySQL < 3.23.54, 4.0.6 Multiple Vulnerabilities   SANS   OVERDUEHigh Risk
1Sendmail < 8.12.8 Buffer Overrun   SANS   URGENTHigh Risk
3MySQL < 3.23.56 Privilege Escalation   SANSMedium Risk
2Apache < 1.3.27 Multiple VulnerabilitiesMedium Risk
2Apache mod_ssl < 2.8.10 off by one VulnerabilityMedium Risk
1Apache Tomcat / Servlet Cross-Site Scripting   SANSMedium Risk
1Lotus Domino < 5.0.9 Database Lock DoS   NEWMedium Risk
1MySQL < 3.23.55 Multiple Vulnerabilities   SANSMedium Risk
1SMTP Server Allows VRFY/EXPNMedium Risk
1Cross-Site ScriptingMedium Risk
1OpenSSL < 0.9.6m, 0.9.7d Multiple Vulnerabilities   SANSMedium Risk
1Lotus Domino Anonymous Database AccessMedium Risk
1SMB NULL Session   SANSMedium Risk
1OpenSSL < 0.9.6j, 0.9.7b Password Interception   SANS   NEWMedium Risk
1Globally Useable Name Server   SANSMedium Risk
2TRACE and/or TRACK Methods EnabledLow Risk
2Identd enabledLow Risk
2Apache < 1.3.29 Multiple Local FlawsLow Risk
1Windows Terminal Service EnabledLow Risk
1Holes Detected in Firewall ConfigurationLow Risk
1ICMP Timestamp RequestLow Risk
1Apache mod_userdir Information LeakLow Risk
1Microsoft Frontpage Extensions InstalledLow Risk
1SSH Protocol Version 1 Enabled   NEWLow Risk
1/doc directory browsableLow Risk
1Kerberos PingPong DOSLow Risk
1Script Calling phpinfo() Detected   OVERDUELow Risk

Scans by Sec52