Technical Report

Date:Sunday, March 10, 2002 16:21:01
User Name:xxxxxxxxxxxxxxxxx
Company:xxxxxxxxx
Session ID:112
Session Name:Test 1
Current Job ID:131
Current Job Date:March 10, 2002 4:19:31 PM

Testcase name
Found
Not Found
Not Connect
Error
Not Played
Unknown

'+' character accepted as UNIX login name
0
0
5
0
0
0
'Attack FTP' Backdoor Found
0
0
5
0
0
0
.reg Association Unprotected
0
2
0
0
2
1
.reg Files Associated With Regedit.exe
2
0
0
0
2
1
AAA failure in CISCO IOS 11.3
0
0
0
0
5
0
ACC's Tigris Access Terminal Vulnerability
0
0
5
0
0
0
Acme thttpd Arbitrary World-Readable File Disclosure Vulnerability
0
0
1
0
5
0
Active SNMP Agent
0
0
4
0
0
0
Active trinoo Master or Daemon
0
2
0
0
3
0
ActivePerl perlIS.dll Buffer Overflow Vulnerability
0
2
1
0
3
0
Address Translation Table Available via SNMP
0
1
4
0
0
0
aglimpse Script detected
0
3
1
0
2
0
Akopia Interchange Sample Files Vulnerability
0
3
1
0
2
0
Alcatel Speed Touch Pro ADSL Insecure Embedded TFTP Server Vulnerability
0
0
5
0
0
0
Alchemy Eye Remote Command Execution Vulnerability
0
2
1
0
3
0
Alex Heiphetz Group EZShopper Directory Disclosure Vulnerability
0
5
1
0
0
0
Alibaba 2.0 Multiple CGI Vulnerabilties
0
2
1
0
3
0
Alibaba 2.0 Web Server Exposes File System
0
2
1
0
3
0
Allaire ColdFusion 4.0x CFCACHE Vulnerability
0
5
1
0
0
0
Allaire ColdFusion Path Disclosure Vulnerability
0
5
1
0
0
0
Allaire ColdFusion Sample Directory Listing
0
5
1
0
0
0
Allaire JRun 2.3.x Sample Files Vulnerability
0
5
1
0
0
0
Alt-N MDaemon 'Lock Server' Bypass Vulnerability
0
1
4
0
0
0
Alt-N MDaemon 3.1.1 DoS Vulnerability
0
0
5
0
0
0
Alt-N MDaemon 3.5.4 DoS Vulnerability
0
1
4
0
0
0
Alt-N MDaemon Session ID Hijacking Vulnerability
0
1
4
0
0
0
Alternate Security Provider Is Used For NT Logons
0
2
0
0
2
1
amd Buffer Overflow
0
0
5
0
0
0
Anonymous FTP Allowed
0
1
4
0
0
0
Anonymous FTP Connection Reveals Real Passwd File
0
0
4
1
0
0
Anonymous FTP Connection Shows Unpassworded Account
0
1
4
0
0
0
Anonymous Remote Registry Access
2
0
0
0
2
1
AnyForm CGI allowing remote commands execution vulnerability
0
5
1
0
0
0
AOL Instant Messenger 4.7 Denial of Service Vulnerabilities
0
2
0
0
2
1
AOL Instant Messenger Remote Buffer Overflow
0
2
0
0
2
1
AOLserver Directory Traversal Vulnerability
0
2
1
0
3
0
Apache - HTTP Server is Outdated
2
1
1
0
2
0
Apache AuthPG Remote SQL Query Manipulation Vulnerability
0
5
1
0
0
0
Apache HTTP Server Root Directory Access Vulnerability
0
2
1
1
2
0
Apache mod_auth_pgsql Remote SQL Query Manipulation Vulnerability
0
5
1
0
0
0
Apache Split-Logfile File Appending Vulnerability
3
2
1
0
0
0
Apache Tomcat 3.1 Path Disclosure Vulnerability
0
0
1
0
5
0
Apache Tomcat Snoop Servlet Information Disclosure Vulnerability
0
0
1
0
5
0
Apache Web Server with Php 3 File Disclosure Vulnerability
0
2
1
0
3
0
Apache Win32 PHP.EXE Remote File Disclosure Vulnerability
0
2
1
0
3
0
ASP :$DATA disclosing system information vulnerability
0
0
1
0
5
0
ASP ::$DATA issue source code disclosure vulnerability
0
0
1
0
5
0
ASP Appended Dot Vulnerability
0
0
1
0
5
0
ASP Source Code Retrieved With Unicode Extension
0
0
1
0
3
2
AT&T VNC Service Available
1
4
0
0
0
0
AT&T WinVNC Remote Desktop Default Configuration Vulnerability
0
2
0
0
2
1
Atmel SNMP Community String Vulnerability
0
1
4
0
0
0
Atrium Software Mercur Mail Server 3.2 Directory Traversal Vulnerability
0
1
4
0
0
0
Attack in RPC Applications
0
0
5
0
0
0
auth/tcp (ident protocol) Service Enabled Vulnerability
0
0
5
0
0
0
Back Orifice 2000 Backdoor Program Vulnerability
0
3
0
0
2
0
Back Orifice Backdoor Program Vulnerability
0
0
5
0
0
0
Backdoor Passwords in 3com Switches
0
0
5
0
0
0
Backdoor program Remote Windows Shutdown (RWS)
0
0
5
0
0
0
Bad Protections on LSA Key
0
2
0
0
2
1
Bad Protections on Winlogon Key
0
2
0
0
2
1
BadBlue Source Code Disclosure Vulnerability
0
0
1
0
3
2
BadBlue Source Directory Listing Vulnerability
0
2
1
0
3
0
Bajie Webserver Absolute Path Disclosure Vulnerability
0
2
1
0
3
0
Bajie Webserver File Reading Vulnerability
0
2
1
0
3
0
BAK Files Disclose Content of ASP Source
0
2
1
0
3
0
Bardon Data Systems WinU Weak Encrypted Password Vulnerability
0
2
0
0
2
1
Bay Networks "user" Account
0
0
5
0
0
0
BB4 Big Brother CGI File Creation Vulnerability
0
0
5
0
0
0
BDIR.HTR Shows Directory Structure of Web Server
0
2
1
0
3
0
BEA Systems WebLogic Server Directory Listing Vulnerability
0
2
1
0
3
0
BEA WebLogic Source Code Disclosure Vulnerability via "/file/"
0
0
1
0
3
2
BIND Version Query Allowed Vulnerability
0
0
4
0
1
0
Bootparamd Service Present
0
0
5
0
0
0
Broker FTP Directory Traversal Vulnerability
0
0
4
0
1
0
BRS WebWeaver Directory Traversal Vulnerability
0
2
1
0
3
0
BRS WebWeaver FTP Root Path Disclosure Vulnerability
0
1
4
0
0
0
BSCW Insecure Default Installation Vulnerability
0
5
1
0
0
0
BSCW/Python Full Path Disclosure Through IIS Vulnerability
0
5
1
0
0
0
Buffer Overflow in MDaemon WebConfig Service
0
0
5
0
0
0
Buffer Overflow in MDaemon WorldClient Standard Service
0
0
5
0
0
0
Bugs Backdoor Found
0
0
5
0
0
0
Bugzilla Sensitive Information Disclosure Vulnerability
0
5
1
0
0
0
Cache Corruption on Microsoft DNS Servers
0
2
0
0
2
1
cachemgr.cgi Installed in cgi-bin
0
3
1
0
2
0
campas CGI security hole
0
3
1
0
2
0
Carey Internets Services Commerce.cgi Directory Traversal Vulnerability
0
5
1
0
0
0
Catalyst Remote Supervisor Module Reload Vulnerability
0
0
5
0
0
0
Caucho Technology Resin 1.2 JSP Source Disclosure Vulnerability
0
5
1
0
0
0
Caucho Technology Resin JavaBean Disclosure Vulnerability
0
5
1
0
0
0
cc_whois.cgi Remote Command Execution
0
3
1
0
2
0
CERN httpd Server multiple vulnerabilities
0
3
1
0
2
0
Cfingerd Outdated Version Vulnerability
0
0
5
0
0
0
Cfingerd User Enumeration Via Search Vulnerability
0
0
5
0
0
0
CGI Script Center Auction Weaver Directory Traversal Vulnerability
0
2
1
0
3
0
CGI Script Center Subscribe Me LITE Administrative Password Alteration Vulnerability
0
5
1
0
0
0
Cgi-bin Directory Listing vulnerability
0
5
1
0
0
0
chargen/tcp Service is Running
0
0
5
0
0
0
chargen/udp Service is Running
0
2
3
0
0
0
Charles Clark Meteor FTP Directory Traversal Vulnerability
0
0
4
0
1
0
Checkpoint Firewall-1 Valid Username Vulnerability
0
0
5
0
0
0
Checkpoint SecureRemote detection
0
5
0
0
0
0
Chili!Soft ASP Sample Scripts Directory Traversal Vulnerability
0
3
1
0
2
0
CISCO Device Identification Vulnerability
0
0
0
0
5
0
Cisco IOS HTTP Configuration Arbitrary Administrative Access Vulnerability
0
0
1
0
5
0
CISCO IOS Software Outdated
0
0
0
0
5
0
Cisco PIX Firewall Manager Exposes Files
0
0
5
0
0
0
Cisco Router Password Not Set Vulnerability
0
0
5
0
0
0
CISCO TFTPD Server 1.1 Directory Traversal Vulnerability
0
0
4
0
1
0
CiscoSecure ACS Remote Admin Vulnerability
0
0
5
0
0
0
Cobalt RaQ .bash_history Exposed
0
5
1
0
0
0
Cognos Powerplay Web Edition CGI Parameters Vulnerability
0
5
1
0
0
0
Cold Fusion - Debug Mode Vulnerability
0
5
1
0
0
0
Cold Fusion - Fileexists.cfm Sample Available Vulnerability
0
2
1
0
3
0
Cold Fusion Syntax Checker Vulnerability
0
2
1
0
3
0
ColdFusion Server DoS Attacks
0
5
1
0
0
0
ColdFusion Server Expression Evaluator Remote execution vulnerability
0
5
1
0
0
0
Command Interpreter Found in Cgi-bin
0
5
1
0
0
0
CommuniGate Pro Arbitrary File Read Vulnerability
0
2
1
0
3
0
Compaq Management Agent Web Directory Traversal
0
0
5
0
0
0
Computer Associates eTrust Intrusion Detection System Weak Encryption Vulnerability
0
2
0
0
2
1
Comsat Flooding Vulnerability
0
0
5
0
0
0
Count.cgi Buffer Overflow Vulnerability
0
5
1
0
0
0
count.cgi unauthorized GIF File access vulnerability
0
5
1
0
0
0
Dangerous Sendmail Aliases
0
1
4
0
0
0
Dansie Shopping Cart Installed
0
5
1
0
0
0
Datawizard FtpXQ Directory Traversal Vulnerability
0
0
4
0
1
0
DataWizard FtpXQ Privileged Default Account Permissions Vulnerability
0
0
4
0
1
0
daytime/tcp Service is Running
0
0
5
0
0
0
daytime/udp Service is Running
0
1
4
0
0
0
DCOM Enabled
2
0
0
0
2
1
Deerfield WorldClient 2.1 Directory Traversal Vulnerability
0
2
1
0
3
0
Default Login Name Obtained from Registry Database
2
0
0
0
2
1
Default Sun Java Web Server Servlet Vulnerability
0
2
1
0
3
0
DeleGate Cross-Site Scripting Vulnerability
0
2
1
0
3
0
Delta Trojan/Backdoor Active
0
0
4
0
1
0
discard/tcp Service is Running
0
0
5
0
0
0
discard/udp Service is Running
2
0
3
0
0
0
DNS Inverse Query Supported
0
1
4
0
0
0
DNS Server Enabled
1
0
4
0
0
0
DNS Zone Transfer
1
0
4
0
0
0
Domino Database Security
0
2
1
0
3
0
Doubledot Bug in FrontPage Personal Web Server
0
2
1
0
3
0
Drummon Miles A1Stats Directory Traversal Vulnerability
0
2
1
0
3
0
Dumpenv CGI System Disclosure Vulnerability
0
5
1
0
0
0
echo/tcp Service is Running
0
0
5
0
0
0
echo/udp Service is running
0
2
3
0
0
0
EFTP CWD Directory Traversal Vulnerability
0
0
5
0
0
0
EFTP DirectoryTraversal Vulnerability
0
0
4
0
1
0
EFTP File Existence Vulnerability
0
0
4
0
1
0
Eserv 2.50 Web Interface Server Directory Traversal Vulnerability
0
0
5
0
0
0
EServ Password-Protected File Access Vulnerability
0
2
1
0
3
0
EvilFTP Trojan Horse
0
0
5
0
0
0
EWS Remote Command Execution
0
5
1
0
0
0
Exchange NNTP DoS
0
0
5
0
0
0
Exchange SMTP DoS
0
1
4
0
0
0
Exploitable Buffer overflow in the InterAccess telnet server TelnetD
0
0
5
0
0
0
Extent RBS ISP Directory Traversal Vulnerability
0
5
1
0
0
0
Extropia WebBanner Input Validation Vulnerability
0
5
1
0
0
0
EZShopper loadpage.cgi Execution Vulnerability
0
5
1
0
0
0
FAQManager.CGI NULL Character Arbitrary File Disclosure Vulnerability
0
5
1
0
0
0
Fastream FTP++ Absolute Path Disclosure Vulnerability
0
0
4
0
1
0
Fastream FTP++ Denial of Service Vulnerability
0
0
4
0
1
0
FastTrack Web Server allows Directory Listing
0
0
1
0
5
0
Faxsurvey Remote Command Execution
0
3
1
0
2
0
File Access Vulnerability with MS Frontpage Server Extensions
0
2
1
0
3
0
Finger CGI Hole
0
3
1
0
2
0
Finger Information Disclosure
0
0
5
0
0
0
Fingerd Enabled
0
0
5
0
0
0
Firewall - 1 SNMP Open Access
0
1
4
0
0
0
Floosietek FTGate Mail Server Vulnerability
0
0
4
0
1
0
FormMail CGI Vulnerability
0
5
1
0
0
0
Fortech Proxy+ 2.30 Remote Administration Vulnerability
0
0
5
0
0
0
Fortech Proxy+ Telnet Gateway Vulnerability
0
0
5
0
0
0
Francisco Burzi PHP-Nuke Administrative Privileges Vulnerability
0
3
1
0
2
0
Free Online Dictionary of Computing Remote File Viewing Vulnerability
0
5
1
0
0
0
Free Peers BearShare Directory Traversal Vulnerability
0
2
1
0
3
0
Free Peers BearShare Directory Traversal Vulnerability
0
2
1
0
3
0
FreeBSD SSH Port Misconfiguration Vulnerability
0
0
5
0
0
0
FSP Daemon Running Vulnerability
0
0
5
0
0
0
FTGATE Interface Security holes
0
0
1
0
5
0
FTP Banner Exposure
0
1
4
0
0
0
FTP Bounce Attack
0
0
5
0
0
0
FTP CWD ~root Vulnerability
0
0
5
0
0
0
FTP NT GUEST Account Vulnerability
0
0
5
0
0
0
FTP Ports Under PASV Commands Are Opened In Sequential Order
0
0
5
0
0
0
FTP's Real Home Directory Found
0
1
4
0
0
0
FTPd RNFR Issue
0
0
5
0
0
0
ftpd signal processing
0
0
5
0
0
0
FTPd Unprotected
0
0
5
0
0
0
FTPd Writeable Directories
0
0
5
0
0
0
Getadmin Exploit
0
2
0
0
2
1
Getdrvrs.exe Reveals Information
0
2
1
0
3
0
GoAhead WebServer Directory Traversal Vulnerability
0
2
1
0
3
0
GoodTech FTP Server Denial of Service
0
0
4
0
1
0
Gopher daemon is running
0
0
5
0
0
0
Guestbook CGI Program could lead to Remote Command Execution
0
3
1
0
2
0
Guido Frassetto SEDUM HTTP Server Directory Traversal Vulnerability
0
0
1
0
3
2
Guild FTPD File Existence Disclosure Vulnerability
0
0
4
0
1
0
GuildFTPD Directory Traversal Vulnerability
0
0
4
0
1
0
GuildFTPD Plaintext Password Storage Vulnerability
0
0
4
0
1
0
Heat-On HSWeb Web Server Path Disclosure Vulnerability
0
2
1
0
3
0
HidePak Backdoor Found Vulnerability
0
0
5
0
0
0
Hidesource Backdoor Found
0
0
5
0
0
0
HKEY_CLASSES_ROOT Writeable by Non-administrators
0
2
0
0
2
1
HKEY_LOCAL_MACHINE Writeable by Non Administrators
0
2
0
0
2
1
HKEY_USERS Hive Writeable by Non Administrators
0
2
0
0
2
1
HP LaserJet can be configured remotely
0
0
5
0
0
0
HP LaserJet Opened Port 9099
0
0
5
0
0
0
HP LaserJet Opened Port 9100
0
0
5
0
0
0
ht://dig Arbitrary File Disclosure Vulnerability
0
3
1
0
2
0
htmlscript CGI remote files read access vulnerability
0
3
1
0
2
0
HTTP Available Banner Exposure
4
1
1
0
0
0