Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> SuSE Local Security Checks >> SUSE-SA:2003:005: susehelp


Vulnerability Assessment Details

SUSE-SA:2003:005: susehelp

Vulnerability Assessment Summary
Check for the version of the susehelp package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory SUSE-SA:2003:005 (susehelp).


During a code review of the susehelp package the SUSE Security Team
recognized that the security checks done by the susehelp CGI scripts are
insufficient.
Remote attackers can insert certain characters in CGI queries to the
susehelp system tricking it into executing arbitrary code as the 'wwwrun'
user. Please note that this is only a vulnerability if you have a web server
running and configured to permit access to the susehelp system by remote
sites.
We nevertheless recommend an update of this package. As a temporary
workaround you may un-install the susehelp package by issuing the following
command as root:

rpm -e --nodeps susehelp


Please download the update package for your distribution and verify its
integrity by the methods listed in section 3) of this announcement.
Then, install the package using the command 'rpm -Fhv file.rpm' to apply
the update.

Solution : http://www.suse.de/security/2003_005_susehelp.html
Network Security Threat Level: Medium

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors


Samsung Galaxy Tab S8 Plus Wifi+Cellular 12.4in 128GB - Very Good picture

Samsung Galaxy Tab S8 Plus Wifi+Cellular 12.4in 128GB - Very Good

$269.99



Samsung Galaxy Tab S9 FE+ 12.4

Samsung Galaxy Tab S9 FE+ 12.4" 128GB Gray WiFi Tablet w/ S Pen SM-X610NZACXAR

$359.99



Samsung Tab S9 Ultra Wifi Only - 256GB -14.6in - Excellent picture

Samsung Tab S9 Ultra Wifi Only - 256GB -14.6in - Excellent

$529.00



Samsung Galaxy Tab A9+ 11.0

Samsung Galaxy Tab A9+ 11.0" 64GB Gray Wi-Fi Tablet Bundle SM-X210NZAYXAR 2024

$119.99



Samsung Galaxy Tab S8 Ultra 14.6in WIFI Graphite 256GB - Excellent picture

Samsung Galaxy Tab S8 Ultra 14.6in WIFI Graphite 256GB - Excellent

$419.99



Samsung Galaxy Tab S9 FE 10.9

Samsung Galaxy Tab S9 FE 10.9" - 128GB (Wifi + LTE)(Verizon, No S Pen) - Gray

$229.95



Samsung Galaxy View2 At&t Black 64GB - Very Good picture

Samsung Galaxy View2 At&t Black 64GB - Very Good

$229.00



NEW Samsung Galaxy Book4 Edge 15

NEW Samsung Galaxy Book4 Edge 15" FHD 1TB Storage 16GB RAM Windows 11 Copilot+PC

$599.99



Samsung Galaxy Tab S4 SM-T830 Gray 64GB Wi-Fi 10.5

Samsung Galaxy Tab S4 SM-T830 Gray 64GB Wi-Fi 10.5" Tablet , S-Pen INCLUDED

$98.00



Samsung Chromebook 3 XE500C13 11.6 in. 2GB RAM 16GB SSD Intel Celeron N 2.48GHz picture

Samsung Chromebook 3 XE500C13 11.6 in. 2GB RAM 16GB SSD Intel Celeron N 2.48GHz

$40.00



Discussions

No Discussions have been posted on this vulnerability.