Board logo

标题: 我扫描的结果 谁给分析一下 如何攻击呀 ?如何取得管理员权限? [打印本页]

作者: 爱中国    时间: 2004-7-22 19:28     标题: 我扫描的结果 谁给分析一下 如何攻击呀 ?如何取得管理员权限?

类型 端口/服务 安全漏洞及解决方案
漏洞 ftp (21/tcp) The remote FTP server closes
the connection when a command is too long or is given
a too long argument.
This probably due to a buffer overflow, which
allows anyone to execute arbitrary code
on the remote host.
This problem is threatening, because
the attackers don't need an account
to exploit this flaw.
Solution : Upgrade your FTP server or change it
Risk factor : High
CVE_ID : CAN-2000-0133, CVE-2000-0943, CAN-2002-0126, CVE-2000-0870, CVE-2000-1035, CVE-2000-1194, CAN-2000-1035
BUGTRAQ_ID : 961, 1858, 3884, 7251, 7278, 7307
NESSUS_ID : 10084

提示 ftp (21/tcp) A FTP server is running on this port.
Here is its banner :
220-Topbiz Windows FTP Server ready...
NESSUS_ID : 10330

提示 ftp (21/tcp) Remote FTP server banner :
220-Topbiz Windows FTP Server ready...
NESSUS_ID : 10092

提示 pop3 (110/tcp) A pop3 server is running on this port
NESSUS_ID : 10330

提示 smtp (25/tcp) A SMTP server is running on this port
Here is its banner :
220 KAV6 Smtp Proxy Server Ready
NESSUS_ID : 10330

提示 portmapper (111/tcp)
The RPC portmapper is running on this port.
An attacker may use it to enumerate your list
of RPC services. We recommend you filter traffic
going to this port.
Risk factor : Low
CVE_ID : CAN-1999-0632, CVE-1999-0189
BUGTRAQ_ID : 205
NESSUS_ID : 10223

提示 portmapper (111/tcp) RPC program #100000 version 2 'portmapper' (portmap sunrpc rpcbind) is running on this port
NESSUS_ID : 11111

警告 nfsd (2049/udp)
The nfsd RPC service is running. In the past, this service has had bugs which allow an intruder to execute arbitrary commands on your system. In addition, FreeBSD 4.6.1 RELEASE-p7 and earlier, NetBSD 1.5.3 and earlier have a bug wherein sending a zero length packet to the RPC service will cause the operating system to hang.

Solution : Make sure that you have the latest version of nfsd
Risk factor : High
CVE_ID : CVE-1999-0832, CAN-2002-0830
BUGTRAQ_ID : 782
NESSUS_ID : 10219

提示 RPC/351455 (992/tcp) RPC program #351455 version 1 is running on this port
NESSUS_ID : 11111

提示 RPC/351455 (994/tcp) RPC program #351455 version 2 is running on this port
NESSUS_ID : 11111

提示 RPC/status (1039/tcp) RPC program #100024 version 1 'status' is running on this port
NESSUS_ID : 11111

提示 RPC/nlockmgr (1047/tcp) RPC program #100021 version 1 'nlockmgr' is running on this port
RPC program #100021 version 2 'nlockmgr' is running on this port
RPC program #100021 version 3 'nlockmgr' is running on this port
RPC program #100021 version 4 'nlockmgr' is running on this port
NESSUS_ID : 11111

提示 RPC/mountd (1048/tcp) RPC program #100005 version 1 'mountd' (mount showmount) is running on this port
RPC program #100005 version 2 'mountd' (mount showmount) is running on this port
RPC program #100005 version 3 'mountd' (mount showmount) is running on this port
NESSUS_ID : 11111

提示 RPC/nfs (2049/tcp) RPC program #100003 version 2 'nfs' (nfsprog) is running on this port
RPC program #100003 version 3 'nfs' (nfsprog) is running on this port
NESSUS_ID : 11111

提示 portmapper (111/udp) RPC program #100000 version 2 'portmapper' (portmap sunrpc rpcbind) is running on this port
NESSUS_ID : 11111

提示 unknown (993/udp) RPC program #351455 version 1 is running on this port
NESSUS_ID : 11111

提示 unknown (995/udp) RPC program #351455 version 2 is running on this port
NESSUS_ID : 11111

提示 RPC/status (1039/udp) RPC program #100024 version 1 'status' is running on this port
NESSUS_ID : 11111

提示 RPC/nlockmgr (1047/udp) RPC program #100021 version 1 'nlockmgr' is running on this port
RPC program #100021 version 2 'nlockmgr' is running on this port
RPC program #100021 version 3 'nlockmgr' is running on this port
RPC program #100021 version 4 'nlockmgr' is running on this port
NESSUS_ID : 11111

提示 RPC/mountd (1048/udp) RPC program #100005 version 1 'mountd' (mount showmount) is running on this port
RPC program #100005 version 2 'mountd' (mount showmount) is running on this port
RPC program #100005 version 3 'mountd' (mount showmount) is running on this port
NESSUS_ID : 11111

提示 RPC/nfs (2049/udp) RPC program #100003 version 2 'nfs' (nfsprog) is running on this port
RPC program #100003 version 3 'nfs' (nfsprog) is running on this port
NESSUS_ID : 11111


作者: 爱中国    时间: 2004-7-23 13:16     标题: 我扫描的结果 谁给分析一下 如何攻击呀 ?如何取得管理员权限?

谁知道呀!!给点指点呀!郁闷~~~~~~~~~




欢迎光临 黑色海岸线论坛 (http://bbs.thysea.com/) Powered by Discuz! 7.2