Pass Comelit Intercom Detection 21 Apr 2017 None Pass ManageEngine Firewall Analyzer Detection 13 Apr 2016 None Pass Allen-Bradley MicroLogix 1400 Multiple Vulnerabilities CVE-2012-4690 CVE-2012-6435 CVE-2012-6436 CVE-2012-6437 CVE-2012-6438 CVE-2012-6439 CVE-2012-6440 CVE-2012-6441 CVE-2012-644227 May 2016 10 (v2) Critical Pass MicroLogix 1400 PLC Web Server Multiple Vulnerabilities CVE-2015-6486 CVE-2015-6488 CVE-2015-6491 CVE-2015-6492 31 May 2016 7.5 (v3) High Pass MicroLogix 1400 PLC Web Server Request Handling RCE CVE-2015-6490 31 May 2016 9.8 (v3) Critical Pass TeamSpeak 3 Server Detection 12 Sep 2016 None Pass OMRON FINS TCP Protocol Detection 27 Oct 2016 None Pass X2Engine Detection 23 Feb 2015 None Pass Siemens SIMATIC S7-1200 PLC < 4.1 Open Redirection CVE-2015-1048 02 Mar 2015 4.3 (v2) Medium Pass Honeywell XL Web Controller FTP Directory Traversal CVE-2015-0984 26 Mar 2015 10 (v2) Critical Pass Modbus/TCP Device Identification 10 May 2015 5.8 (v3) Medium Pass HP WebInspect REST API Unauthorized Access 15 Jun 2015 7.5 (v2) High Pass Rockwell Automation MicroLogix 1100 PLC < Series B FRN 13.0 Multiple Vulnerabilities CVE-2012-6435 CVE-2012-6436 CVE-2012-6437 CVE-2012-6438 CVE-2012-6439 CVE-2012-6441 CVE-2012-6442 07 Jul 2015 10 (v2) Critical Pass Rockwell Automation MicroLogix 1100 PLC < FRN 10.0 Authentication Mechanism DoS CVE-2009-3739 07 Jul 2015 10 (v2) Critical Pass HP LaserJet Printers Multiple Vulnerabilities CVE-2013-4828 CVE-2013-4829 16 Oct 2013 4.3 (v2) Medium Pass eScan Agent Detection 24 May 2007 None Pass MikroTik Neighbor Discovery Protocol Detection 25 Nov 2013 None Pass MikroTik MAC Telnet Protocol Detection 03 Dec 2013 None Pass Emerson Network Power Avocent MergePoint Unity KVM Switch Detection 05 Feb 2014 None Pass F5 Networks BIG-IQ Detection 09 May 2014 None Pass Advantech WebAccess Default Credential Check 14 Apr 2014 7.5 (v2) High Pass Oracle Identity Analytics Detection 28 Apr 2014 None Pass Cisco Network Registrar Web UI Detection 29 Apr 2014 None Pass Cisco TelePresence Supervisor Detection 18 Jun 2014 None Pass Palo Alto Networks PAN-OS < 5.0.15 / 5.1.x < 5.1.10 / 6.0.x < 6.0.6 / 6.1.x < 6.1.1 Bash Shell Remote Code Execution (Shellshock)CVE-2014-6271 CVE-2014-7169 20 Oct 2014 10 (v2) Critical Pass Cisco NX-OS GNU Bash Environment Variable Command Injection Vulnerability (cisco-sa-20140926-bash) (Shellshock)CVE-2014-6271 CVE-2014-6277 CVE-2014-6278 CVE-2014-7169 CVE-2014-7186 CVE-2014-7187 27 Oct 2014 10 (v2) Critical Pass Honeywell Excel (XL) Web Controller Detection 25 Aug 2014 None Pass McAfee Web Gateway GNU Bash Code Injection (SB10085) (Shellshock) CVE-2014-6271 CVE-2014-6277 CVE-2014-6278 CVE-2014-7169 CVE-2014-7186 CVE-2014-7187 12 Nov 2014 10 (v2) Critical Pass Cisco TelePresence Conductor Detection 26 Nov 2014 None Pass Sielco Sistemi Winlog Arbitrary File Disclosure CVE-2012-4356 10 Aug 2012 4.3 (v2) Medium Pass Novell File Reporter Agent VOL Tag Remote Code Execution (uncredentialed check) 10 Sep 2012 10 (v2) Critical Pass Magnum MNS-6K Hardcoded Admin Account CVE-2012-3014 05 Oct 2012 7.7 (v2) High Pass HP LaserJet Pro Printers Unauthorized Data Access CVE-2012-5215 19 Mar 2013 8.8 (v2) High Pass VNC Server Unauthenticated Access: Screenshot 22 Apr 2013 7.5 (v2) High Pass HP LaserJet Pro Printers Unauthorized Data Access (April 2013) CVE-2012-5221 09 May 2013 5 (v2) Medium Pass HP Data Protector Components Version Detection 01 Jul 2013 None Pass Tridium Niagara AX Web Server Multiple Vulnerabilities CVE-2012-3024 CVE-2012-3025 CVE-2012-4027 CVE-2012-4028 03 Jul 2013 7.8 (v2) High Pass IPMI Cipher Suites Supported 17 Jul 2013 None Pass HP LaserJet Pro Printers Multiple Information Disclosures (July 2013) CVE-2013-4807 09 Aug 2013 7.8 (v2) High Pass iSCSI Unauthenticated Target Detection 23 Dec 2010 7.5 (v2) High Pass Movicon TcpUploadServer Data Leakage (remote check) 25 Mar 2011 5 (v2) Medium Pass Samsung Data Management Server < 1.4.3 verifyUser Method SQL Injection CVE-2010-4284 11 May 2011 7.5 (v2) High Pass H3C / HP Intelligent Management Center Detection 08 Jun 2011 None Pass Novell File Reporter Engine RECORD Element Tag Parsing Overflow (uncredentialed check) CVE-2011-2220 08 Jul 2011 9.7 (v2) High Pass Symantec Veritas Enterprise Administrator Service (vxsvc) Detection 20 Sep 2011 None Pass MS11-082: Vulnerabilities in Host Integration Server Could Allow Denial of Service (2607670) (uncredentialed check)CVE-2011-2007 CVE-2011-2008 25 Oct 2011 5 (v2) Medium Pass Novell Messenger Server Process Memory Remote Information Disclosure CVE-2011-3179 14 Nov 2011 5 (v2) Medium Pass GE D20 Default Credentials 19 Jan 2012 7.5 (v2) High Pass MicroLogix 1100 PLC Default Credentials 19 Jan 2012 6.4 (v2) Medium Pass SEL Controller Default Credentials 19 Jan 2012 7.5 (v2) High Pass Sensitive information can be obtained from the GE D20 Remote Terminal Unit via TFTP 19 Jan 2012 9.4 (v2) High Pass Multiple Cisco Products brstart sm_read_string_length Remote Code Execution CVE-2011-2738 17 Feb 2012 10 (v2) Critical Pass Terminal Services Doesn't Use Network Level Authentication (NLA) Only 23 Mar 2012 4 (v3) Medium Pass Measuresoft ScadaPro < 4.0.1.0 service.exe RF Command Arbitrary File Disclosure CVE-2011-3495 18 Jun 2012 10 (v2) Critical Pass IBM AIX TCP Large Send Denial of Service Vulnerability CVE-2012-0194 11 Jul 2012 7.1 (v2) High Pass Wyse Thin Client hagent.exe Unspecified Buffer Overflow 02 Sep 2009 10 (v2) Critical Pass Alert Standard Format / Remote Management and Control Protocol Detection 16 Apr 2010 None Pass Cisco CiscoWorks Internetwork Performance Monitor Remote Command Execution CVE-2008-1157 19 Aug 2008 10 (v2) Critical Pass CiscoWorks Server Common Services Login Page XSS CVE-2007-5582 19 Aug 2008 4.3 (v2) Medium Noise UDP Scanner 04 Feb 2009 None Pass Symantec Backup Exec for Windows Multiple Vulnerabilities CVE-2008-5407 CVE-2008-5408 20 Nov 2008 10 (v2) Critical Pass IBM Baseboard Management Controller Default Credentials 11 Jun 2009 10 (v2) Critical Pass DNP3 Binary Inputs Access Remote Information Disclosure 11 Dec 2006 5 (v2) Medium Pass ICCP/COTP (ISO 8073) Protocol Detection 11 Dec 2006 7.4 (v3) High Pass Tamarack IEC 61850 Server Detection 11 Dec 2006 None Pass Modbus/TCP Coil Access 11 Dec 2006 9.1 (v3) Critical Pass Modbus/TCP Discrete Input Access 11 Dec 2006 5 (v2) Medium Pass Modicon Modbus/TCP Programming Function Code Access 11 Dec 2006 6.5 (v3) Medium Pass Modicon PLC Embedded HTTP Server Detection 11 Dec 2006 5 (v2) Medium Pass Modicon PLC Modbus Slave Mode SNMP Request Modbus Mode Remote Disclosure 11 Dec 2006 5 (v2) Medium Pass iSCSI Target Detection 23 Dec 2010 None Pass Citrix SD-WAN Center Detection 11 Apr 2019 None Pass Symantec Management Center Web Detection 08 May 2019 None Pass Rockwell Automation MicroLogix 1100/1400 and CompactLogix 5370 Controllers Open Redirection VulnerabilityCVE-2019-10955 21 May 2019 6.1 (v3) Medium Pass Commvault Web Console Detection 07 Jun 2019 None Pass Cisco Energy Management Web Detection 09 Sep 2019 None Pass Cisco Integrated Management Controller Detection 13 Oct 2014 None Pass Hyper-V Virtual Machine Detection 09 Jun 2015 None Pass Adobe Experience Manager Web Detection 15 Jan 2020 None Pass Buffalo TeraStation Web detection 16 Jul 2018 None Pass PostgreSQL Unauthenticated Version Detection 10 Jul 2018 None Pass Isilon OneFS FTP Detection 14 Aug 2018 None Pass Isilon OneFS Web Interface Detection 14 Aug 2018 None Pass Isilon OneFS NTP Detection 14 Aug 2018 None Pass Isilon OneFS uname Detection 14 Aug 2018 None Pass Ansible Tower WebUI Detection 31 Aug 2018 None Pass Zinwave Series 3000 DAS Web Interface Detection 13 Sep 2018 None Pass AXIS FTP Server Detection 02 Oct 2018 None Pass HPE Intelligent Management Center dbman Detection 10 Oct 2018 None Pass DNP3 Detection of Device attributes 02 Nov 2018 None Pass Detect PROFINET targets listening on the Network Layer. 08 Jan 2019 None Pass Oracle WebLogic Web Services Test Client Detection 28 Jan 2019 None Pass Kubernetes Web API Detection 30 Jan 2019 None Pass ShareFile Storage Zones Controller Web Detection 02 Jun 2020 None Pass Trading Technologies Messaging (ttm_cmd) Detection 03 Jun 2020 None Pass IBM Storwize V7000 Unified 1.3.x < 1.4.3.5 / 1.5.x < 1.5.0.4 Multiple Vulnerabilities (Shellshock) CVE-2014-6271 CVE-2014-7169 CVE-2014-7186 CVE-2014-7187 CVE-2014-6277 CVE-2014-6278 25 Aug 2015 10 (v2) Critical Pass Trend Micro Control Manager Detection (uncredentialed) 17 Feb 2017 None Pass Unitrends Backup Detection 04 May 2017 None Pass Cisco APIC-EM WebUI Detection 05 Feb 2016 None Pass Tenable SecurityCenter Unsupported Version Detection 16 Dec 2013 9.8 (v3) Critical Pass OpenSSL 1.0.1 < 1.0.1g Multiple Vulnerabilities (Heartbleed) CVE-2014-0076 CVE-2014-0160 08 Apr 2014 7.5 (v3) High Pass OpenVPN Heartbeat Information Disclosure (Heartbleed) CVE-2014-0160 14 Apr 2014 7.5 (v3) High Pass HP System Management Homepage OpenSSL Multiple Vulnerabilities (Heartbleed) CVE-2013-4353 CVE-2013-6449 CVE-2013-6450 CVE-2014-0160 18 Apr 2014 7.5 (v3) High Pass HP LaserJet Pro Printers OpenSSL Heartbeat Information Disclosure (HPSBPI03014) (Heartbleed) CVE-2014-0160 01 May 2014 7.5 (v3) High Pass VMware Horizon Workspace 1.8 < 1.8.1 OpenSSL Library Multiple Vulnerabilities (VMSA-2014-0004) (Heartbleed)CVE-2014-0076 CVE-2014-0160 06 May 2014 7.5 (v3) High Pass ESXi 5.5 < Build 1746974 / 5.5 Update 1 < Build 1746018 OpenSSL Library Multiple Vulnerabilities (remote check) (Heartbleed)CVE-2014-0076 CVE-2014-0160 08 May 2014 7.5 (v3) High Pass Western Digital Arkeia Virtual Appliance Detection 28 May 2014 None Pass Caldera Detection 05 Jun 2014 None Pass Kerio Connect 8.2.x < 8.2.4 Heartbeat Information Disclosure (Heartbleed) CVE-2014-0160 08 Jul 2014 7.5 (v3) High Pass Oracle E-Business (January 2014 CPU) CVE-2013-5874 CVE-2013-5890 CVE-2014-0366 CVE-2014-0398 17 Jan 2014 5.5 (v2) Medium Pass Ipswitch IMail Server 11.x / 12.x < 12.4.1.15 Multiple Vulnerabilities (Heartbleed) CVE-2014-0076 CVE-2014-0160 CVE-2014-3878 14 Jul 2014 7.5 (v3) High Pass Patch Management: Host information from VMware Go (deprecated) 06 Dec 2011 None 35
RELAYTO Penetration Test Results Page 34 Page 36