PDA

View Full Version : Having Fun with Sensor Appliance Proventia GX5108 and GX5008 Insecurities (Part One)



newsbot
11-07-2007, 06:54 PM
Several security vulnerabilities have been found in ISS's Proventia appliance, these vulnerabilities allow remote attackers to cause cross site scripting vulnerabilities in their user interface, cause the PHP scripts running on the server to include remote files as well as due to the usage of old OpenSSH (and in compatibility mode) to allow brute forcing of usernames and passwords with a timing attack.

http://www.securiteam.com/securityreviews/5TP0C0AM1S.html