194
Jerod Moemeka Xedus detection
HTTP
2004/09/09
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
2004/11/13
1.1
Corrected the plugin structure and added the accuracy values in 1.1
tcp
4274
open|send GET /testgetrequest.x?param='Attack%20Tool%20Kit' HTTP/1.0\n\n|sleep|close|pattern_exists Attack Tool Kit
90
Check is inspired by the Nessus plugin.
Jerod Moemeka Xedus
Other solutions
Directory Traversal
The remote host is running the Xedus web server which is a part of the peer-to-peer software. It provides the ability to share files, music, and any other media, as well as create robust and dynamic web sites, which can feature database access, file system access, with full .net support.
You should install or upgrade the software to the latest version. See http://www.thinxoft.com for more details. Also limit unwanted connections and communications with firewalling if possible.
Approx. 30 minutes
Yes
http://www.securityfocus.com/bid/11071/exploit/
Yes
Yes
Low
2
7
3
4
Low
Nessus is able to do the same check. The possibilities of exploiting this kind of vulnerabilities is well-known and well documented.
11071
14644
Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427
http://www.computec.ch