Cayman Systems 3220-H Especificaciones Pagina 23

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 49
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 22
SAFER – Vol. 3, Issue 6 23 © 2000 The Relay Group
Gossamer Threads DBMan Information Leakage Vulnerability
Released May 05, 2000
Affects DBMan 2.0.4
Reference http://www.securityfocus.com/bid/1178
Problem
- Requesting an invalid database file from a web server implementing Gossamer Threads DBMan
scripts will return a CGI error message containing environmental variables to a remote user
without any authorization.
- The parameters displayed include the local document root path, server administrator account
name, web server software, platform, etc.
SAFER
- Gossamer Threads has released the solution.
Aladdin Knowledge Systems eToken PIN Extraction Vulnerability
Released May 04, 2000
Affects Aladdin Knowledge Systems eToken 3.3.3x
Reference http://www.securityfocus.com/bid/1170
Problem
- Access to the eToken device itself and entering the PIN number encoded in the eToken will grant
authorization to a local user. The PIN number can be reset to the default value with the use of
standard device programmers. This can be done by physically opening the eToken device (which
can be done without leaving any trace or evidence of tampering) and copying the default PIN
value to the location used to store either the user PIN or administrator PIN in the serial EEPROM.
SAFER
- Vendor is working on a patch.
Netwin Dmailweb Server utoken Buffer Overflow Vulnerability
Released May 04, 2000
Affects NetWin DMail 2.5d
Reference http://www.securityfocus.com/bid/1171
Problem
- By providing a specially crafted, abnormally long "utoken" variable value it is possible to exploit an
unchecked buffer and run arbitrary code on the Dmailweb server.
SAFER
- Netwin has release patches to rectify this issue.
Aladdin eToken 3.3.3.x Hardware USB Key Private Data Extraction
Released May 04, 2000
Affects Aladdin eToken USB Key 3.3.3.x
Reference http://www.L0pht.com/
Problem
- The attack requires physical access to the device circuit board and will allow all private information
to be read from the device without knowing the PIN number of the legitimate user. By using any
number of low-cost, industry-standard device programmers to modify the unprotected external
memory, the User PIN can be changed back to a default PIN. This will allow the attacker to
successfully login to the eToken and access all public and private data. A homebrew device
programmer could be built for under $10 and commercial device programmers are available from
a number of companies ranging in cost from $25 to $1000.
- Users must be aware that the PIN number can be bypassed and should not trust the security of
the token if it is not always directly in their possession. If a legitimate user loses their USB key, all
data, including the private information, needs to be considered to have been compromised.
SAFER
- Vendor is working on a patch.
Vista de pagina 22
1 2 ... 18 19 20 21 22 23 24 25 26 27 28 ... 48 49

Comentarios a estos manuales

Sin comentarios

Philips SHL1700PP/28 manuály

Uživatelské manuály a uživatelské příručky pro Video Philips SHL1700PP/28.
Poskytujeme 1 manuály pdf Philips SHL1700PP/28 ke stažení zdarma podle typů dokumentů: Uživatelský manuál






Další produkty a příručky pro Video Philips

Modely Typ Dokumentu
SQM6485-17 Uživatelský manuál    Philips SQM6485-17 Manuel d'utilisation, 16 stránky
AJ322017 Uživatelský manuál   Philips AJ322017 User Manual, 2 stránky
DCP855-37 Uživatelský manuál   Philips DCP855-37 User Manual [en] , 3 stránky
SHQ4017-28 Uživatelský manuál   Philips SHQ4017-28 User Manual, 2 stránky
SHJ023-27 Uživatelský manuál   Philips SHJ023-27 User Manual, 2 stránky
TV-VCR 19 in 4 HD VCR Uživatelský manuál   Philips TV-VCR 19 in 4 HD VCR User Manual [en] , 2 stránky
SHS4847-28 Uživatelský manuál   Philips SHS4847-28 User Manual [en] , 2 stránky
HTS5100B-F7 Uživatelský manuál   Philips HTS5100B-F7 User Manual, 56 stránky
SWV3474S-17 Uživatelský manuál   Philips SWV3474S-17 User Manual [en] , 2 stránky
SHE7050WT-00 Uživatelský manuál   Philips SHE7050WT-00 User Manual, 2 stránky
SHL3000BL-00 Uživatelský manuál   Philips SHL3000BL-00 User Manual, 2 stránky
42TA648BX-37 Uživatelský manuál   Philips 42TA648BX-37 User Manual, 3 stránky
Micro Hi-Fi System MC-500 MP3 Uživatelský manuál   Philips Micro Hi-Fi System MC-500 MP3 User Manual, 27 stránky
BT3500B-37 Uživatelský manuál     Philips BT3500B-37 User Manual, 2 stránky
LX80003798 Uživatelský manuál   Philips LX80003798 User Manual, 31 stránky
DC1050-12 Uživatelský manuál   Philips DC1050-12 User Manual, 4 stránky
SA5DOT04ONS-37 Uživatelský manuál    Philips SA5DOT04ONS-37 Manuel d'utilisation, 2 stránky
28PFL4909-F7 Uživatelský manuál   Philips 28PFL4909-F7 User Manual [en] , 3 stránky
AZ40001799 Uživatelský manuál   Philips AZ40001799 User Manual [en] , 2 stránky
32ST2300-27 Uživatelský manuál   Philips 32ST2300-27 User Manual, 2 stránky