Your Company Detailed Scan Results - April 2003

Host 192.168.0.101 ( http://www.yourcompany.com )
Scan Type Enterprise
Start Date 13-Apr-03 11:54
End Date 13-Apr-03 14:39
Customer Ref
Contact E-mail Role
janebloggs@yourcompany.com business

Open Ports Found: 12 (High:2 Low:10)

  Port No Protocol Service Details  
 NEW 7 tcp echo pingtest  
 NEW 13 tcp daytime 13 APR 2003 11:55:06 BST  
 NEW 19 tcp chargen )*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQR  
 NEW 20 tcp ftp 220 ProFTPD 1.2.1 Server [192.168.0.101]  
 NEW 25 tcp smtp 220 unhardened.example.com ESMTP Sendmail 8.12.8/8.12.8; Sun, 13 Apr 2003 11:49:20 +0100  
 NEW 80 tcp http Apache/1.3.26 (Unix) (Technologue/Linux) mod_ssl/2.8.10 OpenSSL/0.9.6 PHP/4.0.6  
 NEW 111 tcp sunrpc 9 services found  
 NEW 7 udp echo pingtest  
 NEW 13 udp daytime 13 APR 2003 11:55:06 BST  
 NEW 19 udp chargen ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefgh  
 NEW 111 udp portmap 9 services found  
 NEW 123 udp ntp system="Linux2.4.18-27.7.x", statum=2  

Warning: You have high-risk (red) ports exposed to the internet. These may not represent a direct vulnerability but it is not common practice to expose these services. Consider restricting access to these ports. This will help to protect you against potential future vulnerabilities.


Vulnerabilities Found: 1 (High:0 Medium:0 Low:1)

Vulnerability 10884 NTP Information Leakage  NEW Low Risk
Description It is possible to determine various details about the remote host by querying the NTP variables. This includes the OS, upstream NTP server and detailed clock information. An attacker can use this information to focus their attack strategy.  
Solution Use a firewall to restrict NTP to trusted addresses, or configure ntpd to ignore info packets.  
First Found 13 April 2003 Port 123/udp Last 6 Months


Historical Information

Scans by Clearview Systems