| |
| Test B1 (Mainstream Attack Baseline): Pass |
| Vulnerability |
Exploit / Script Name |
Baseline Pass/Fail |
Signature Fires |
Reported as: |
CVE # |
| NFS Automounter |
amd |
Pass |
1 |
RPC: AMD/AMQ BufferOverflow |
|
| IIS Unicode |
uni |
Pass |
3 |
"HTTP: Nimda Worm - IIS Extended Unicode Directory Travesal Attack, unicode-utf8-too-long-encoding" |
|
| cmsd |
cmsd |
Pass |
2 |
"RPC: CMSD Solaris Horizon BufferOverflow, RPC: CMSD Solaris LSD BufferOverflow" |
|
| snmp (public write) |
snmp |
Pass |
2 |
SNMPV2: Write Common Default Community String (x2) |
|
| sadmind |
sadmind |
Pass |
1 |
RPC: SADMIND SPARC BufferOverflow |
|
| RDS |
rds |
Pass |
1 |
HTTP: MS Remote Data Services Attack |
|
| wu-ftpd |
wu |
Pass |
2 |
"FTP: IAC Evade Attempt, shellcode-detected-for-arch-i386" |
|
| imapd |
imap |
Pass |
1 |
IMAP: Wu Imapd Lsub Exploit |
|
| statd |
statd |
Pass |
7 |
"RPC: STATD SMMON FormatString (x3), shellcode-detected-for-arch-i386 (x3), " |
BACKDOOR: Unix Command Shell Running |
| IIS ISAPI |
isapi |
Pass |
3 |
"HTTP: IIS PRINTER BufferOverflow, HTTP: BufferOverFlow Attempt Detected in Header, shellcode-detected-for-arch-i386" |
|
| |
|
|
|
|
|
| Totals: |
10 attacks |
|
23 |
|
|
| |
| Test B2 (modified attacks): Pass |
| |
|
|
|
|
|
| imapd |
ADMutated imap attack |
IMAP_Generic_Intel_overflow |
Pass |
|
|
| |
|
IMAP_Long_parameter |
Pass |
|
|