GFI
English Deutsch Français Italiano Nederlands Español
Table of Contents Previous Next

5. Getting started: Analyzing the security scan results : Detailed scan results: Analyzing Vulnerabilities
Click on the Vulnerabilities sub-node to view the security vulnerabilities identified on the target computer. Discovered vulnerabilities are grouped by type and severity into five main categories:
Vulnerabilities > Missing service packs
NOTE: GFI LANguard N.S.S. can identify missing patches and service packs on various Microsoft products. For a complete list of supported products visit: http://kbase.gfi.com/showarticle.asp?id=KBID001820.
Product name’ and ‘Service Pack Number’.
*URL:’ - The URL link to support articles related to the missing service pack.
*Release date:’ - The date when the reported service pack was released.
Vulnerabilities > Missing patches
‘Patch ID’ and ‘Product name’.
‘ID/URL:’ – The ID and URL of the respective Microsoft Knowledge Base article.
‘Severity:’ - The effect that the patch has on the security level of a network device.
‘Date Posted:’ - The release date of the missing patch.
Vulnerabilities > High, medium, low security vulnerabilities
* Mail, FTP, RPC, DNS and Miscellaneous – These groups contains the vulnerabilities discovered on FTP servers, DNS servers, and SMTP/POP3/IMAP mail servers. The information shown in these sections includes links to Microsoft Knowledge Base articles or other support documentation.
* Web – This group contains the vulnerabilities discovered on web servers (such as misconfiguration issues). Supported web servers include Apache, Netscape, and Microsoft I.I.S. The information listed in this section includes:
o
‘Vulnerability check name’ (for example, Imported_IIS: FrontPage Check)
o
‘Description:’ – A short description of the respective vulnerability.
o
‘ID/URL:’ – The ID of the relevant Microsoft Knowledge Base article(s) and the URL to more detailed information on the vulnerability.
* Services – This group contains vulnerabilities discovered in active services as well as the list of unused accounts that are still active and accessible on scanned targets.
* Registry – This group contains vulnerabilities discovered in the registry settings of a scanned network device. The details shown in this category include links to support documentation as well as a short description of the respective vulnerability.
* Software – This group contains vulnerabilities found in software installed on the scanned network device(s). The details shown in this category include links to supporting documentation as well as a short description of the vulnerability.
* Rootkit – This group includes details of vulnerabilities discovered as a result of having a rootkit installed on the scanned network device(s). The details shown in this category include links to supporting documentation as well as a short description of the vulnerability.

   © 2008. All rights reserved. GFI Software Home Products Download Trials Support Ordering Site Map About Us Contact us
GFI solutions: anti spam - exchange anti virus - isa server - network vulnerability scanner - event log management - USB security software - exchange archiving - fax server software