LOCATION: Neohapsis / OSEC / Test Results / NFR NID-320 3.2 / B Tests
About OSEC
Test Criteria
Test Results
Resources
 
Test B1 (Mainstream Attack Baseline): Pass
Vulnerability Exploit / Script Name Baseline Pass/Fail Signature Fires Reported as: CVE #
NFS Automounter amd Pass 1 rpc_amd:amd_overflow
CVE-1999-0704
IIS Unicode uni Pass 1 www_iis:filename_goes_past_root_alert
CAN-2000-0284
cmsd cmsd Pass 1 rpc_cmsd:cmsd_overflow
CVE-1999-0696
snmp (public write) snmp Pass 2 snmp_uservars:bad_commname_alert, snmp_attacks:set_request_alert
CAN-1999-0517
sadmind sadmind Pass 2 rpc_sadmind:sadmind_overflow [x2]
CVE-1999-0977
RDS rds Pass 1 www_iis:rds_mdac_alert
CVE-1999-1011
wu-ftpd wu Pass 2 ftp_commands:tilde_globbing_alert, ftp_commands:site_alert
CVE-2001-0550
imapd imap Pass 1 imap_commandlen2:second_arg_alert
CAN-2000-0284
statd statd Pass 3 rpc_statd:statd_fmtstring [x3]
CVE-2000-0666
IIS ISAPI isapi Pass 1 www_iis:isapi_buffer_overflow_alert
CVE-2001-0241
         
Totals: 10 attacks   15    
 
Test B2 (modified attacks): Pass
           
imapd ADMutated imapd attack imap_commandlen2:second_arg_alert
Pass    
           
Copyright 2002, Neohapsis, Inc.