| Windows ME was installed on a Dell 8100. While the focus of this study is on servers, we felt it would be important to hit some of the popular workstation OS’s since many people have broadband in their home, and use ME.
Nessus Scan Report
--------------------------------------------------------------------------------
Number of security holes found : 0
Number of security warnings found : 3
Number of security notes found : 1
--------------------------------------------------------------------------------
192.168.0.5 :
List of open ports :
netbios-ns (137/udp) (Security warnings found)
general/udp (Security notes found)
general/tcp (Security warnings found)
general/icmp (Security warnings found)
Warning found on port
netbios-ns (137/udp)
The following 3 NetBIOS names have been gathered :
TEST = This is the computer name registered for workstation services by a
WINS client.
WORKGROUP = Workgroup / Domain name
TEST = Computer name that is registered for the messenger service on a
computer that is a WINS client.
The remote host has the following MAC address on its adapter :
0x00 0xb0 0xd0 0xe6 0xc4 0x01
If you do not want to allow everyone to find the NetBios name
of your computer, you should filter incoming traffic to this port.
Risk factor : Medium
[
back to the list of ports ]
Information found on port general/udp
For your information, here is the traceroute to
192.168.0.5 :
192.168.0.5
[
back to the list of ports ]
Warning found on port
general/tcp
The remote host uses non-random IP IDs, that is, it is
possible to predict the next value of the ip_id field of
the ip packets sent by this host.
An attacker may use this feature to determine if the remote
host sent a packet in reply to another request. This may be
used for port scanning and other things.
Solution : Contact your vendor for a patch
Risk factor : Low
[
back to the list of ports ]
Warning found on port
general/icmp
The remote host answers to an ICMP timestamp
request. This allows an attacker to know the
date which is set on your machine.
This may help him to defeat all your
time based authentifications protocols.
Solution : filter out the icmp timestamp
requests (13), and the outgoing icmp
timestamp replies (14).
Risk factor : Low
CVE :
CAN-1999-0524
|