Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> CGI abuses >> PHP-Nuke is installed on the remote host


Vulnerability Assessment Details

PHP-Nuke is installed on the remote host

Vulnerability Assessment Summary
Acertains if PHP-Nuke is installed on the remote host

Detailed Explanation for this Vulnerability Assessment

The remote host is running a copy of PHP-Nuke.

Given the insecurity history of this package, the Nessus
team recommends that you do not use it but
use something else instead, as security was clearly
not in the mind of the persons who wrote it.

The author of PHP-Nuke (Francisco Burzi) even started to rewrite
the program from scratch, given the huge number of vulnerabilities
(http://www.phpnuke.org/modules.php?name=News&file=article&sid=5640)

Solution : De-install this package and use something else
Network Security Threat Level: High

Networks Security ID: 6446, 6465, 6503, 6750, 6887, 6890, 7031, 7060, 7078, 7079

Vulnerability Assessment Copyright: This script is Copyright (C) 2003 Renaud Deraison

Cables, Connectors

Juniper Networks DS3/E3 Enhanced IQ (IQE) PIC PE-4DS3-E3-IQE-BNC
$199.0
Juniper Networks DS3/E3 Enhanced IQ (IQE) PIC PE-4DS3-E3-IQE-BNC pictureJuniper Networks MX960 with 4 Power Supplies (7688160)
$1400.0
Juniper Networks MX960 with 4 Power Supplies (7688160) pictureJuniper SRX-GP-2XE-SFPP-TX 2-Port 10GBe SFP+ XPIM Module
$265.0
Juniper SRX-GP-2XE-SFPP-TX 2-Port 10GBe SFP+ XPIM Module pictureJuniper C-FEB Services 710-010462 Rev. 06 FEB-M7i-SVCS-S-B
$179.99
Juniper C-FEB Services 710-010462 Rev. 06 FEB-M7i-SVCS-S-B picture


Discussions

No Discussions have been posted on this vulnerability.