194 Jerod Moemeka Xedus detection HTTP 2004/09/09 Marc Ruef marc dot ruef at computec dot ch http://www.computec.ch computec.ch Marc Ruef marc dot ruef at computec dot ch http://www.computec.ch computec.ch 2004/11/13 1.1 Corrected the plugin structure and added the accuracy values in 1.1 tcp 4274 open|send GET /testgetrequest.x?param='Attack%20Tool%20Kit' HTTP/1.0\n\n|sleep|close|pattern_exists Attack Tool Kit 90 Check is inspired by the Nessus plugin. Jerod Moemeka Xedus Other solutions Directory Traversal The remote host is running the Xedus web server which is a part of the peer-to-peer software. It provides the ability to share files, music, and any other media, as well as create robust and dynamic web sites, which can feature database access, file system access, with full .net support. You should install or upgrade the software to the latest version. See http://www.thinxoft.com for more details. Also limit unwanted connections and communications with firewalling if possible. Approx. 30 minutes Yes http://www.securityfocus.com/bid/11071/exploit/ Yes Yes Low 2 7 3 4 Low Nessus is able to do the same check. The possibilities of exploiting this kind of vulnerabilities is well-known and well documented. 11071 14644 Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427 http://www.computec.ch