| To: | <nessus@list.nessus.org> |
|---|---|
| Subject: | Netware Management Portal False-Positive |
| From: | "Justin Doles" <Justin.Doles@LibertySavingsBank.com> |
| Date: | Fri, 10 Nov 2006 11:48:16 -0500 |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | nessus-list1@securepoint.com |
| Delivered-to: | nessus@list.nessus.org |
| List-archive: | <http://mail.nessus.org/pipermail/nessus> |
| List-help: | <mailto:nessus-request@list.nessus.org?subject=help> |
| List-id: | Discussion of Nessus software <nessus.list.nessus.org> |
| List-post: | <mailto:nessus@list.nessus.org> |
| List-subscribe: | <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=subscribe> |
| List-unsubscribe: | <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=unsubscribe> |
| Sender: | nessus-bounces@list.nessus.org |
I have a Windows Server 2003 that keeps showing up in the Nessus scan with the following: http-alt (8080/tcp) The Netware Management Portal software is running on this machine. The Portal allows anyone to view the current server configuration and locate other Portal servers on the network. It is possible to browse the server's filesystem by requesting the volume in the URL. However, a valid user account is needed to do so. Solution: Disable this service if it is not in use or block connections to this server on TCP ports 8008 and 8009. Risk factor : High Nessus ID : 10826 This server doesn't have Netware on it at all. Note that the info references port 8008 & 8009, yet the port/service is listed as 8080. There is a service running on 8080 (NimBus QoS), but it not Netware. Any ideas on why this shows up like this? Justin _______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Possible signed/unsigned confusion in plugin 22529, Renaud Deraison |
|---|---|
| Next by Date: | RE: Nessus in the Enterprise, John Scherff |
| Previous by Thread: | Re-released Microsoft Patches., Zate Berg |
| Next by Thread: | Re: Netware Management Portal False-Positive, George A. Theall |
| Indexes: | [Date] [Thread] [Top] [All Lists] |