CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer
image Vulnerabilities: Old vulnerabilities in new devices image
Security Hole
There is nothing that man fears more than the touch of the unknown.
Elias Canetti (1905-94); Austrian novelist and philosopher.

- Old vulnerabilities in new devices -
Oxygen3 24h-365d, by Panda Software (http://www.pandasoftware.com)

Madrid, December 23, 2003 - The number of peripheral devices which include
TCP/IP services for a range of functions, such as remote control, is
continually increasing. Today, in Oxygen3 24h-365d we will look at why, ...........................

on many occasions, vulnerabilities detected in these services are actually old
problems that have been corrected in the oldest and most widely used
solutions.

One example of a classic vulnerability affecting web servers is directory
traversal. Although this is a very well known problem and corrected in most
web servers, such as Apache or Internet Information Server, it is present in
HTTP services in some recently created devices (printers, webcams, etc.).

To a certain extent, the persistence of old vulnerabilities lies in the
limitations of the new devices, which have less resources than PCs to store
and execute services. This means that vendors try to include 'minimalist'
software, to take care of just the basic functions.

This kind specifically designed software doesn't have the same background of
patches and security checks as more widely used solutions in servers and
computers. In many cases, even common problems that have previously been
detected and corrected are ignored.

------------------------------------------------------------

The 5 viruses most frequently detected by Panda ActiveScan, Panda Software's
free online scanner: 1)Downloader.L; 2)Parite.B; 3)Bugbear.B; 4)Blaster;
5)Blaster.E.
Posted on Thursday, 25 December 2003 @ 04:00:00 UTC by phoenix22 (1152 reads)
[ Trackback ]
image

"Vulnerabilities: Old vulnerabilities in new devices" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register
 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· HotScripts
· Apache Web Server
· W3 Consortium
· More about Security Hole
· News by phoenix22


Most read story about Security Hole:
Windows Media Player, Spyware and Trojan

block bottom
Article Rating
spacer
Average Score: 0
Votes: 0

Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer