Vulnerability Scanning Solutions, LLC.
Home
Our Process
Residential
Corporate
What We Scan For
Sample Report
Client List
Terms
Contact Us
What We Scan For
Family: Denial of Service --> Category: infos

Computer Associates eTrust Intrusion Detection System Remote Denial of Service Vulnerability Scan


Vulnerability Scan Summary
Acertains if eTrust Intrusion Detection System is vulnerable to a Denial of Service

Detailed Explanation for this Vulnerability Test

Synopsis :

It is possible to crash the remote IDS service.

Description :

The remote host is running Computer Associates eTrust Intrusion Detection
System, a security solution with intrusion detection, antivirus, web
filtering and session monitoring.

The remote version of this software is vulnerable to a Denial of Service
vulnerability in the way it uses 'CPImportKey' function.
A possible hacker can exploit this issue to crash the remote service by sending
a specially crafted administration packet.

Solution :

Upgrade to version 3.0.5.57

See also :

http://www.nessus.org/u?86be784a

Threat Level:

Medium / CVSS Base Score : 5
(AV:R/AC:L/Au:NR/C:N/A:C/I:N/B:A)

Click HERE for more information and discussions on this network vulnerability scan.

VSS, LLC.

P.O. Box 827051

Pembroke Pines, FL 33082-7051

Vulnerability Scanning Solutions, LLC.