Pass IBM WebSphere Application Server 8.0 < Fix Pack 6 Multiple Vulnerabilities CVE-2012-4853 CVE-2013-0169 CVE-2013-0440 CVE-2013-0443 CVE-2013-0458 CVE-2013-0459 CVE-2013-0461 CVE-2013-0462 CVE-2013-0482 CVE-2013-0541 CVE-2013-0542 CVE-2013-0543 CVE-2013-054410 May 2013 10 (v2) Critical Pass Apache mod_status /server-status Information Disclosure 28 May 2001 5.3 (v3) Medium Pass Apache mod_info /server-info Information Disclosure 28 May 2001 5.3 (v3) Medium Pass Web Server HTTP POST Method Handling Remote Overflow DoS 15 Jun 2001 9.3 (v2) High Pass PerlCal cal_make.pl p0 Parameter Traversal Arbitrary File Read CVE-2001-0463 10 May 2001 7.8 (v2) High Pass Netscape Enterprise Server Long Traversal Request Remote DoS CVE-2001-0252 15 Jun 2001 5 (v2) Medium Pass SSH 3.0.0 Locked Account Remote Authentication Bypass CVE-2001-0553 21 Jul 2001 5.1 (v2) Medium Pass SimpleServer:WWW Encoded Traversal Arbitrary Command Execution CVE-2001-1586 17 Jul 2001 10 (v2) Critical Pass BroadVision One-To-One Enterprise Nonexistent JSP Request Path Disclosure CVE-2001-0031 15 Jun 2001 5 (v2) Medium Pass Juniper Junos Security Bypass Stateless Firewall Deactivation (JSA10859) CVE-2018-0026 20 Jul 2018 4.7 (v3) Medium Pass Cisco IOS HTTP Configuration Unauthorized Administrative Access CVE-2001-0537 02 Jul 2001 9.3 (v2) High Pass Palo Alto Networks PAN-OS 6.1.21 and earlier / 7.1.x < 7.1.19 / 8.0.x < 8.0.12 / 8.1.x < 8.1.3 Multiple VulnerabilitiesCVE-2018-10139 CVE-2018-10140 28 Aug 2018 6.1 (v3) Medium Pass VMware ESX Third-Party Libraries Multiple Vulnerabilities (VMSA-2010-0001) (remote check) CVE-2009-0689 CVE-2009-2404 CVE-2009-2408 CVE-2009-2409 CVE-2009-3274 CVE-2009-3370 CVE-2009-3372 CVE-2009-3373 CVE-2009-3374 CVE-2009-3375 CVE-2009-3376 CVE-2009-3380 CVE-2009-338208 Mar 2016 10 (v2) Critical Pass Sambar Server pagecount CGI Traversal Arbitrary File Overwrite CVE-2001-1010 29 Jul 2001 5 (v2) Medium Pass BEA WebLogic Hex Encoded Request JSP Source Disclosure 13 Aug 2001 5 (v2) Medium Pass Cisco Small Business RV Series Router Unsupported Detection 12 Apr 2021 9.8 (v3) Critical Pass MS01-035: Microsoft IIS FrontPage fp30reg.dll Remote Overflow (uncredentialed check) CVE-2001-0341 26 Jun 2001 7.5 (v2) High Pass NetCode NC Book book.cgi current Parameter Arbitrary Command Execution CVE-2001-1114 13 Aug 2001 7.5 (v2) High Pass SuSE Support Data Base sbsearch.cgi Arbitrary Command Execution CVE-2001-1130 13 Aug 2001 7.5 (v2) High Pass SIX-webboard generate.cgi 'content' Parameter Traversal Arbitrary File Access CVE-2001-1115 13 Aug 2001 5 (v2) Medium Pass SHOUTcast Server User-Agent / Host Header DoS CVE-2001-1304 13 Aug 2001 5 (v2) Medium Pass Apache Auth Module SQL Injection CVE-2001-1379 07 Sep 2001 7.3 (v3) High Pass 3Com Superstack 3 Switch Multiple Default Accounts CVE-1999-0508 29 Aug 2001 7.5 (v2) High Pass Zope < 2.3.3 ZClass Permission Mapping Modification Local Privilege Escalation CVE-2001-0567 28 Sep 2001 4.6 (v2) Medium Pass Tripwire for Webpages Installation Disclosure 29 Aug 2001 5 (v2) Medium Pass Motorola Vanguard with No Password (telnet check) CVE-1999-0508 22 Jan 2003 10 (v2) Critical Pass Solaris in.fingerd Unused Accounts Disclosure CVE-2001-1503 22 Oct 2001 5 (v2) Medium Pass FTGate4 IMAP EXAMINE Command Remote Overflow CVE-2005-3640 17 Nov 2005 10 (v2) Critical Pass Cisco TelePresence Codecs DoS CVE-2011-2577 24 Jul 2013 7.8 (v2) High Pass Network Solutions Rwhoisd Syslog Remote Format String CVE-2001-0913 25 Nov 2001 7.5 (v2) High Pass Multiple Linux rpc.mountd Remote Overflow CVE-1999-0002 12 Mar 2003 10 (v2) Critical Pass Multiple Vendor FTPD on Windows Floppy Request CPU Consumption DoS 06 Dec 2001 5 (v2) Medium Pass ColdFusion Debug Mode Information Disclosure 07 Nov 2001 5 (v2) Medium Pass Webalizer < 2.01-09 Multiple XSS CVE-2001-0835 03 Dec 2001 4.3 (v2) Medium Pass Alchemy Eye/Network Monitor Traversal Arbitrary Command Execution CVE-2001-0871 03 Dec 2001 7.5 (v2) High Pass Horde Imp Webmail status.php3 message Parameter XSS CVE-2001-0857 10 Nov 2001 7.5 (v2) High Pass Interactive Story story.pl next Parameter Traversal Arbitrary File Access CVE-2001-0804 03 Dec 2001 7.8 (v2) High Pass SSH Protocol Version 1 Session Key Retrieval CVE-2001-0361 CVE-2001-0572 CVE-2001-1473 06 Mar 2002 7.5 (v2) High Pass ESXi 5.5 < Build 5230635 Multiple Vulnerabilities (VMSA-2017-0006) (remote check) CVE-2017-4904 CVE-2017-4905 31 Mar 2017 8.8 (v3) High Pass memcached No Newline Memory Consumption DoS CVE-2010-1152 20 Apr 2010 5 (v2) Medium Pass SilverStream Directory Listing 06 Feb 2002 5 (v2) Medium Pass Oracle 9iAS mod_plsql DAD Admin Interface Access CVE-2000-1235 07 Feb 2002 5 (v2) Medium Pass FAQManager 'faqmanager.cgi' 'toc' Parameter Arbitrary File Access CVE-2002-2033 25 Jan 2002 5 (v2) Medium Pass Microsoft ASP.NET Malformed File Request Path Disclosure 05 Feb 2002 5 (v2) Medium Pass SilverStream Database Structure Disclosure 06 Feb 2002 5 (v2) Medium Pass MPEi/X Default FTP Accounts CVE-1999-0502 05 Jun 2002 10 (v2) Critical Pass Altiris Deployment Solution Server < 6.9 SP4 DBManager DoS (SYM10-007) CVE-2010-0109 21 Apr 2010 3.3 (v2) Low Pass SSH Protocol Versions Supported 06 Mar 2002 None Pass X Display Manager Control Protocol (XDMCP) Detection 13 Mar 2002 4.3 (v2) Medium Pass Multiple Vulnerabilities in Cisco Unified Computing System (cisco-sa-20130424-ucsmulti) CVE-2013-1182 CVE-2013-1183 CVE-2013-1184 CVE-2013-1185 CVE-2013-1186 17 Sep 2013 10 (v2) Critical Pass Microsoft IIS ASP ISAPI Filter Multiple Overflows CVE-2002-0079 CVE-2002-0147 CVE-2002-0149 10 Apr 2002 7.5 (v2) High Pass Windows 98 FTP MS/DOS Device Name Request DoS 29 Mar 2002 7.5 (v3) High Pass EFTP .lnk File Handling Remote Overflow CVE-2001-1112 29 Mar 2002 10 (v2) Critical Pass Squid FTP URL Special Character Handling Remote Overflow CVE-2002-0068 27 Mar 2002 7.5 (v2) High Pass lighttpd < 1.3.8 Null Byte Request CGI Script Source Code Disclosure CVE-2005-0453 16 Feb 2005 5.3 (v3) Medium Pass Trend Micro Control Manager cgiShowClientAdm Security Bypass 28 Apr 2017 7.3 (v3) High Pass ServletExec 4.1 / JRun ISAPI Multiple DoS CVE-2002-0894 CVE-2000-0681 22 May 2002 10 (v2) Critical Pass Apple iTunes < 10.2 Multiple Vulnerabilities (uncredentialed check) CVE-2010-1205 CVE-2010-1824 CVE-2010-2249 CVE-2010-4008 CVE-2010-4494 CVE-2011-0111 CVE-2011-0112 CVE-2011-0113 CVE-2011-0114 CVE-2011-0115 CVE-2011-0116 CVE-2011-0117 CVE-2011-0118 CVE-2011-0119 CVE-2011-0120 CVE-2011-0121 CVE-2011-0122 CVE-2011-0123 CVE-2011-0124 CVE-2011-0125 CVE-2011-0126 CVE-2011-0127 CVE-2011-0128 CVE-2011-0129 CVE-2011-0130 CVE-2011-0131 CVE-2011-0132 CVE-2011-0133 CVE-2011-0134 CVE-2011-0135 CVE-2011-0136 CVE-2011-0137 CVE-2011-0138 CVE-2011-0139 CVE-2011-0140 CVE-2011-0141 CVE-2011-0142 CVE-2011-0143 CVE-2011-0144 CVE-2011-0145 CVE-2011-0146 CVE-2011-0147 CVE-2011-0148 CVE-2011-0149 CVE-2011-0150 CVE-2011-0151 CVE-2011-0152 CVE-2011-0153 CVE-2011-0154 CVE-2011-0155 CVE-2011-0156 CVE-2011-0164 CVE-2011-0165 CVE-2011-0168 CVE-2011-0170 CVE-2011-0191 CVE-2011-019203 Mar 2011 9.3 (v2) High Pass IBM WebSphere Application Server 6.1 < 6.1.0.37 Multiple Vulnerabilities CVE-2011-1308 CVE-2011-1321 CVE-2011-1322 CVE-2011-1683 18 Apr 2011 6.8 (v2) Medium Pass PHP 5.3 < 5.3.6 Multiple Vulnerabilities CVE-2011-0421 CVE-2011-0708 CVE-2011-1092 CVE-2011-1153 CVE-2011-1464 CVE-2011-1466 CVE-2011-1467 CVE-2011-1468 CVE-2011-1469 CVE-2011-147018 Mar 2011 7.5 (v2) High Pass IBM WebSphere Application Server 6.1 < 6.1.0.41 Multiple Vulnerabilities CVE-2011-1359 CVE-2011-1362 CVE-2011-1377 CVE-2011-3192 CVE-2011-5065 CVE-2011-5066 19 Jan 2012 10 (v2) Critical Pass Linksys Router Default Password CVE-1999-0508 05 Jun 2002 10 (v2) Critical Pass ActivePerl findtar Sample Script Remote Command Execution 08 Jun 2002 10 (v2) Critical Pass Xerver Web Server < 2.20 Crafted C:/ Request Remote DoS CVE-2002-0448 07 Jun 2002 5 (v2) Medium Pass ISC BIND < 9.2.1 rdataset Parameter Malformed DNS Packet DoS CVE-2002-0400 22 Jul 2002 7.8 (v2) High Pass Beanstalkd < 1.4.6 Remote Beanstalkd Command Injection CVE-2010-2060 14 Jun 2010 7.5 (v2) High Pass RemoteNC Backdoor Detection 29 Sep 2003 10 (v2) Critical Pass Microsoft Windows SMB Service Detection 05 Jun 2002 None Pass Wireless Access Point Detection 09 Jun 2002 None Pass HTTP Reverse Proxy Detection (Deprecated) CVE-2004-2320 CVE-2005-3398 CVE-2005-3498 CVE-2007-3008 02 Jul 2002 5.4 (v3) Medium Pass iPlanet Search Engine search CGI Arbitrary File Access CVE-2002-1042 10 Jul 2002 5 (v2) Medium Pass Resin MS-DOS Device Request Path Disclosure CVE-2002-2090 17 Jul 2002 5 (v2) Medium Pass MS10-012: Vulnerabilities in SMB Could Allow Remote Code Execution (971468) (uncredentialed check) CVE-2010-0020 CVE-2010-0021 CVE-2010-0022 CVE-2010-0231 13 Sep 2010 10 (v2) Critical Pass Sun AnswerBook2 Web Server dwhttpd GET Request Remote Format String 14 Aug 2002 10 (v2) Critical Pass RPC rusers Remote Information Disclosure CVE-1999-0626 03 Aug 2002 5 (v2) Medium Pass Trend Micro OfficeScan tmlisten.exe Malformed Data Remote DoS CVE-2000-0203 03 Aug 2002 5 (v2) Medium Pass BadBlue Malformed GET Request Remote DoS CVE-2002-1023 06 Aug 2002 5 (v2) Medium Pass Apache Tomcat DOS Device Name XSS 10 Jul 2002 4.3 (v2) Medium Pass MySQL < 4.0.21 mysqlhotcopy Insecure Temporary File Creation CVE-2004-0457 23 Aug 2004 4.6 (v2) Medium Pass Web Server HTTP Header Memory Exhaustion DoS 18 Aug 2002 7.8 (v2) High Pass Sendmail -C Malformed Configuration Privilege Escalation CVE-2001-0713 18 Aug 2002 5.9 (v3) Medium Pass Pi3Web < 2.0.1 CGI Handler Long Parameter Handling Overflow CVE-2002-0142 22 Aug 2002 5 (v2) Medium Pass Apache <= 2.0.39 Win32 Crafted Traversal Arbitrary File Access CVE-2002-0661 18 Aug 2002 7.3 (v3) High Pass WS_FTP Multiple Command Long Argument Overflow CVE-2001-1021 21 Aug 2002 10 (v2) Critical Pass Network UPS Tools < 2.6.4 addchar() Function Buffer Overflow CVE-2012-2944 22 Jun 2012 7.5 (v2) High Pass Canna SR_INIT Command Remote Overflow CVE-2000-0584 29 Aug 2002 7.5 (v2) High Pass Directory Manager edit_image.php Arbitrary Command Execution CVE-2001-1020 22 Aug 2002 7.5 (v2) High Pass xtelw Detection 13 Sep 2002 None Pass xtel Detection 13 Sep 2002 None Pass Radmin (Remote Administrator) Port 4899 Detection 15 Sep 2002 None Pass mldonkey Detection (telnet check) 17 Sep 2002 None Pass Mountain Network Systems webcart.cgi Arbitrary Command Execution CVE-2001-1502 21 Aug 2002 7.5 (v2) High Pass Palo Alto Networks PAN-OS < 6.1 / 7.x < 7.1 / 8.1.x < 8.1.4 Cross-Site Scripting Vulnerability (PAN-SA-2018-0014)CVE-2018-10141 14 Mar 2019 6.1 (v3) Medium Pass AnalogX Proxy SOCKS4a DNS Hostname Handling Remote Overflow CVE-2002-1001 21 Sep 2002 10 (v2) Critical Pass ISC BIND named SIG Resource Server Response RR Overflow CVE-2002-1219 12 Nov 2002 10 (v2) Critical Pass IBM WebSphere Edge Caching Proxy DoS CVE-2002-1169 25 Nov 2002 5 (v2) Medium Pass LiteServe HTTP Service Malformed URL Decoding Remote DoS 18 Nov 2002 5 (v2) Medium Pass Service Detection (HELP Request) 18 Nov 2002 None Pass Unknown Service Detection: Banner Retrieval 18 Nov 2002 None Pass IRC Daemon Version Detection 19 Nov 2002 None Pass Webserver 4D Plaintext Password Storage CVE-2002-1521 26 Oct 2002 2.1 (v2) Low Pass Savant Web Server cgitest.exe Overflow CVE-2002-2146 27 Nov 2002 7.5 (v2) High Pass Windows FTP Server NULL Administrator Password 21 Nov 2002 10 (v2) Critical Pass KeyFocus (KF) Web Server Null Byte Request Restricted File / Directory Access 25 Nov 2002 5 (v2) Medium Pass Samba Encrypted Password String Conversion Decryption Overflow CVE-2002-1318 25 Nov 2002 10 (v2) Critical Pass SWS Web Server Unfinished Line Remote DoS CVE-2002-2370 27 Nov 2002 5 (v2) Medium Pass myEvent Multiple Remote Vulnerabilities CVE-2006-1890 CVE-2006-1907 CVE-2006-1908 21 Apr 2006 7.5 (v2) High Pass 4553 Parasite Mothership Backdoor Detection 03 Dec 2002 10 (v2) Critical Pass phpPgAdmin sql.php goto Parameter Traversal Arbitrary File Access CVE-2001-0479 04 Sep 2002 5 (v2) Medium Pass Cyrus IMAP Server login Command Remote Overflow 20 Dec 2002 7.5 (v2) High Pass WebServer 4 Everyone Host Field Header Buffer Overflow CVE-2002-1941 25 Nov 2002 5 (v2) Medium Pass 3Com NBX ftpd CEL Command Remote Overflow (1) CVE-2002-2300 02 Dec 2002 7.5 (v2) High 7
RELAYTO Penetration Test Results Page 6 Page 8