Eero,

Thanks for the reply, but I ran this on 2 different hosts one with nmap
5 and the other with nmap 5.21.  It might be a problem of how this
host's firewall is responding to nmap messages.



This is an external scan, so there might be a firewall configuration.
But I'm tryiing to figure out what would trigger openvas to state it's a
mongoose vulnerability.

-------- Original Message --------
Subject: Re: [Openvas-discuss] mongoose vulnerability
From: Eero Volotinen <[email protected]>
To: Ali Khalfan <[email protected]>
Date: Mon Apr 01 2013 08:38:06 GMT+0300 (AST)

> There is something wrong with your network or nmap portscanner. You need to
> fix it first.
> 
> Eero
> 
> 
> 2013/3/31 Ali Khalfan <[email protected]>
> 
>> scanning those ports individually shows them as filtered
>>
>> Host is up (0.059s latency).
>> PORT     STATE    SERVICE
>> 9290/tcp filtered unknown
>>
>>
>>
>> no, there's no snort software running
>>
>>
>> -------- Original Message --------
>> Subject: Re: [Openvas-discuss] mongoose vulnerability
>> From: Eero Volotinen <[email protected]>
>> To: Ali Khalfan <[email protected]>
>> Date: Sun Mar 31 2013 21:49:08 GMT+0300 (AST)
>>
>>> Lots of ports open? running snort or similar software? transparent proxy
>>> usually can affect results on port 80.
>>>
>>> Eero
>>>
>>>
>>> 2013/3/31 Ali Khalfan <[email protected]>
>>>
>>>> nmap scan results show the below.  What do you mean by the second
>>>> question?  is there a proxy implemented in the network.  I think so.
>>>>
>>>>
>>>>
>>>>
>>>> PORT      STATE    SERVICE
>>>> 1/tcp     open     tcpmux
>>>> 3/tcp     open     compressnet
>>>> 4/tcp     open     unknown
>>>> 6/tcp     open     unknown
>>>> 7/tcp     open     echo
>>>> 13/tcp    open     daytime
>>>> 17/tcp    open     qotd
>>>> 20/tcp    open     ftp-data
>>>> 21/tcp    open     ftp
>>>> 24/tcp    open     priv-mail
>>>> 26/tcp    open     rsftp
>>>> 30/tcp    open     unknown
>>>> 33/tcp    open     dsp
>>>> 37/tcp    open     time
>>>> 42/tcp    open     nameserver
>>>> 43/tcp    open     whois
>>>> 49/tcp    open     tacacs
>>>> 53/tcp    filtered domain
>>>> 80/tcp    open     http
>>>> 81/tcp    open     hosts2-ns
>>>> 83/tcp    open     mit-ml-dev
>>>> 84/tcp    open     ctf
>>>> 85/tcp    open     mit-ml-dev
>>>> 88/tcp    open     kerberos-sec
>>>> 89/tcp    open     su-mit-tg
>>>> 90/tcp    open     dnsix
>>>> 100/tcp   open     newacct
>>>> 106/tcp   open     pop3pw
>>>> 125/tcp   open     locus-map
>>>> 135/tcp   filtered msrpc
>>>> 139/tcp   filtered netbios-ssn
>>>> 146/tcp   open     iso-tp0
>>>> 163/tcp   open     cmip-man
>>>> 212/tcp   open     anet
>>>> 222/tcp   open     rsh-spx
>>>> 259/tcp   open     esro-gen
>>>> 264/tcp   open     bgmp
>>>> 301/tcp   open     unknown
>>>> 311/tcp   open     asip-webadmin
>>>> 366/tcp   open     odmr
>>>> 389/tcp   open     ldap
>>>> 406/tcp   open     imsp
>>>> 416/tcp   open     silverplatter
>>>> 417/tcp   open     onmux
>>>> 425/tcp   open     icad-el
>>>> 443/tcp   open     https
>>>> 444/tcp   open     snpp
>>>> 445/tcp   filtered microsoft-ds
>>>> 458/tcp   open     appleqtc
>>>> 464/tcp   open     kpasswd5
>>>> 465/tcp   open     smtps
>>>> 500/tcp   open     isakmp
>>>> 512/tcp   open     exec
>>>> 513/tcp   open     login
>>>> 524/tcp   open     ncp
>>>> 543/tcp   open     klogin
>>>> 544/tcp   open     kshell
>>>> 554/tcp   open     rtsp
>>>> 593/tcp   filtered http-rpc-epmap
>>>> 616/tcp   open     unknown
>>>> 617/tcp   open     sco-dtmgr
>>>> 636/tcp   open     ldapssl
>>>> 666/tcp   open     doom
>>>> 667/tcp   open     unknown
>>>> 691/tcp   open     resvc
>>>> 700/tcp   open     unknown
>>>> 705/tcp   open     unknown
>>>> 711/tcp   open     unknown
>>>> 726/tcp   open     unknown
>>>> 765/tcp   open     webster
>>>> 777/tcp   open     unknown
>>>> 787/tcp   open     qsc
>>>> 843/tcp   open     unknown
>>>> 888/tcp   open     accessbuilder
>>>> 898/tcp   open     sun-manageconsole
>>>> 901/tcp   open     samba-swat
>>>> 902/tcp   open     iss-realsecure
>>>> 903/tcp   open     iss-console-mgr
>>>> 911/tcp   open     unknown
>>>> 987/tcp   open     unknown
>>>> 992/tcp   open     telnets
>>>> 1001/tcp  open     unknown
>>>> 1007/tcp  open     unknown
>>>> 1009/tcp  open     unknown
>>>> 1011/tcp  open     unknown
>>>> 1021/tcp  open     unknown
>>>> 1022/tcp  open     unknown
>>>> 1024/tcp  open     kdm
>>>> 1025/tcp  open     NFS-or-IIS
>>>> 1028/tcp  open     unknown
>>>> 1029/tcp  open     ms-lsa
>>>> 1033/tcp  open     netinfo
>>>> 1035/tcp  open     multidropper
>>>> 1037/tcp  open     unknown
>>>> 1039/tcp  open     unknown
>>>> 1040/tcp  open     netsaint
>>>> 1042/tcp  open     unknown
>>>> 1047/tcp  open     unknown
>>>> 1049/tcp  open     unknown
>>>> 1050/tcp  open     java-or-OTGfileshare
>>>> 1053/tcp  open     unknown
>>>> 1056/tcp  open     unknown
>>>> 1057/tcp  open     unknown
>>>> 1058/tcp  open     nim
>>>> 1059/tcp  open     nimreg
>>>> 1060/tcp  open     polestar
>>>> 1061/tcp  open     unknown
>>>> 1064/tcp  open     unknown
>>>> 1065/tcp  open     unknown
>>>> 1066/tcp  open     fpo-fns
>>>> 1067/tcp  open     instl_boots
>>>> 1068/tcp  open     instl_bootc
>>>> 1069/tcp  open     cognex-insight
>>>> 1071/tcp  open     unknown
>>>> 1072/tcp  open     unknown
>>>> 1073/tcp  open     unknown
>>>> 1075/tcp  open     unknown
>>>> 1076/tcp  open     sns_credit
>>>> 1077/tcp  open     unknown
>>>> 1079/tcp  open     unknown
>>>> 1080/tcp  open     socks
>>>> 1082/tcp  open     unknown
>>>> 1083/tcp  open     ansoft-lm-1
>>>> 1086/tcp  open     unknown
>>>> 1088/tcp  open     unknown
>>>> 1090/tcp  open     unknown
>>>> 1091/tcp  open     unknown
>>>> 1092/tcp  open     unknown
>>>> 1093/tcp  open     unknown
>>>> 1094/tcp  open     unknown
>>>> 1095/tcp  open     unknown
>>>> 1097/tcp  open     unknown
>>>> 1098/tcp  open     unknown
>>>> 1099/tcp  open     unknown
>>>> 1100/tcp  open     unknown
>>>> 1102/tcp  open     unknown
>>>> 1104/tcp  open     unknown
>>>> 1106/tcp  open     unknown
>>>> 1108/tcp  open     unknown
>>>> 1110/tcp  open     nfsd-status
>>>> 1113/tcp  open     unknown
>>>> 1114/tcp  open     unknown
>>>> 1119/tcp  open     unknown
>>>> 1121/tcp  open     unknown
>>>> 1122/tcp  open     unknown
>>>> 1123/tcp  open     unknown
>>>> 1124/tcp  open     unknown
>>>> 1126/tcp  open     unknown
>>>> 1130/tcp  open     unknown
>>>> 1131/tcp  open     unknown
>>>> 1132/tcp  open     unknown
>>>> 1137/tcp  open     unknown
>>>> 1141/tcp  open     unknown
>>>> 1145/tcp  open     unknown
>>>> 1151/tcp  open     unknown
>>>> 1152/tcp  open     unknown
>>>> 1164/tcp  open     unknown
>>>> 1165/tcp  open     unknown
>>>> 1166/tcp  open     unknown
>>>> 1169/tcp  open     unknown
>>>> 1183/tcp  open     unknown
>>>> 1185/tcp  open     unknown
>>>> 1192/tcp  open     unknown
>>>> 1199/tcp  open     unknown
>>>> 1201/tcp  open     unknown
>>>> 1213/tcp  open     unknown
>>>> 1217/tcp  open     unknown
>>>> 1218/tcp  open     aeroflight-ads
>>>> 1233/tcp  open     unknown
>>>> 1234/tcp  open     hotline
>>>> 1236/tcp  open     unknown
>>>> 1247/tcp  open     unknown
>>>> 1259/tcp  open     unknown
>>>> 1296/tcp  open     unknown
>>>> 1300/tcp  open     unknown
>>>> 1309/tcp  open     unknown
>>>> 1310/tcp  open     unknown
>>>> 1322/tcp  open     unknown
>>>> 1328/tcp  open     unknown
>>>> 1352/tcp  open     lotusnotes
>>>> 1417/tcp  open     timbuktu-srv1
>>>> 1433/tcp  open     ms-sql-s
>>>> 1443/tcp  open     ies-lm
>>>> 1455/tcp  open     esl-lm
>>>> 1501/tcp  open     sas-3
>>>> 1503/tcp  open     imtc-mcs
>>>> 1533/tcp  open     virtual-places
>>>> 1580/tcp  open     unknown
>>>> 1594/tcp  open     unknown
>>>> 1641/tcp  open     unknown
>>>> 1687/tcp  open     unknown
>>>> 1688/tcp  open     unknown
>>>> 1700/tcp  open     mps-raft
>>>> 1720/tcp  open     H.323/Q.931
>>>> 1723/tcp  open     pptp
>>>> 1755/tcp  filtered wms
>>>> 1761/tcp  open     landesk-rc
>>>> 1782/tcp  open     hp-hcip
>>>> 1783/tcp  open     unknown
>>>> 1801/tcp  open     unknown
>>>> 1805/tcp  open     unknown
>>>> 1839/tcp  open     unknown
>>>> 1862/tcp  open     unknown
>>>> 1914/tcp  open     unknown
>>>> 1935/tcp  open     rtmp
>>>> 1984/tcp  open     bigbrother
>>>> 1998/tcp  open     x25-svc-port
>>>> 1999/tcp  open     tcp-id-port
>>>> 2000/tcp  open     cisco-sccp
>>>> 2001/tcp  open     dc
>>>> 2003/tcp  open     finger
>>>> 2005/tcp  open     deslogin
>>>> 2007/tcp  open     dectalk
>>>> 2008/tcp  open     conf
>>>> 2009/tcp  open     news
>>>> 2013/tcp  open     raid-am
>>>> 2020/tcp  open     xinupageserver
>>>> 2021/tcp  open     servexec
>>>> 2022/tcp  open     down
>>>> 2033/tcp  open     glogger
>>>> 2034/tcp  open     scoremgr
>>>> 2038/tcp  open     objectmanager
>>>> 2040/tcp  open     lam
>>>> 2041/tcp  open     interbase
>>>> 2043/tcp  open     isis-bcast
>>>> 2046/tcp  open     sdfunc
>>>> 2047/tcp  open     dls
>>>> 2048/tcp  open     dls-monitor
>>>> 2049/tcp  open     nfs
>>>> 2068/tcp  open     advocentkvm
>>>> 2099/tcp  open     unknown
>>>> 2103/tcp  open     zephyr-clt
>>>> 2105/tcp  open     eklogin
>>>> 2106/tcp  open     ekshell
>>>> 2111/tcp  open     kx
>>>> 2119/tcp  open     unknown
>>>> 2121/tcp  open     ccproxy-ftp
>>>> 2135/tcp  open     unknown
>>>> 2144/tcp  open     unknown
>>>> 2170/tcp  open     unknown
>>>> 2179/tcp  open     unknown
>>>> 2196/tcp  open     unknown
>>>> 2200/tcp  open     unknown
>>>> 2222/tcp  open     unknown
>>>> 2260/tcp  open     unknown
>>>> 2288/tcp  open     unknown
>>>> 2301/tcp  open     compaqdiag
>>>> 2323/tcp  open     unknown
>>>> 2381/tcp  open     unknown
>>>> 2383/tcp  open     ms-olap4
>>>> 2394/tcp  open     unknown
>>>> 2399/tcp  open     unknown
>>>> 2401/tcp  open     cvspserver
>>>> 2492/tcp  open     unknown
>>>> 2500/tcp  open     rtsserv
>>>> 2522/tcp  open     unknown
>>>> 2525/tcp  open     unknown
>>>> 2601/tcp  open     zebra
>>>> 2605/tcp  open     bgpd
>>>> 2607/tcp  open     unknown
>>>> 2608/tcp  open     unknown
>>>> 2702/tcp  open     sms-xfer
>>>> 2717/tcp  open     unknown
>>>> 2718/tcp  open     unknown
>>>> 2800/tcp  open     unknown
>>>> 2811/tcp  open     unknown
>>>> 2869/tcp  open     unknown
>>>> 2909/tcp  open     unknown
>>>> 2920/tcp  open     unknown
>>>> 2967/tcp  open     symantec-av
>>>> 2998/tcp  open     iss-realsec
>>>> 3000/tcp  open     ppp
>>>> 3001/tcp  open     nessus
>>>> 3005/tcp  open     deslogin
>>>> 3006/tcp  open     deslogind
>>>> 3007/tcp  open     unknown
>>>> 3011/tcp  open     unknown
>>>> 3013/tcp  open     unknown
>>>> 3030/tcp  open     unknown
>>>> 3031/tcp  open     unknown
>>>> 3050/tcp  open     unknown
>>>> 3052/tcp  open     powerchute
>>>> 3071/tcp  open     unknown
>>>> 3077/tcp  open     unknown
>>>> 3128/tcp  open     squid-http
>>>> 3168/tcp  open     unknown
>>>> 3211/tcp  open     unknown
>>>> 3261/tcp  open     unknown
>>>> 3300/tcp  open     unknown
>>>> 3324/tcp  open     unknown
>>>> 3351/tcp  open     unknown
>>>> 3369/tcp  open     unknown
>>>> 3370/tcp  open     unknown
>>>> 3371/tcp  open     unknown
>>>> 3372/tcp  open     msdtc
>>>> 3389/tcp  open     ms-term-serv
>>>> 3404/tcp  open     unknown
>>>> 3476/tcp  open     unknown
>>>> 3493/tcp  open     unknown
>>>> 3517/tcp  open     unknown
>>>> 3546/tcp  open     unknown
>>>> 3690/tcp  open     svn
>>>> 3809/tcp  open     unknown
>>>> 3814/tcp  open     unknown
>>>> 3826/tcp  open     unknown
>>>> 3827/tcp  open     unknown
>>>> 3878/tcp  open     unknown
>>>> 3889/tcp  open     unknown
>>>> 3914/tcp  open     unknown
>>>> 3920/tcp  open     unknown
>>>> 3986/tcp  open     mapper-ws_ethd
>>>> 4000/tcp  open     remoteanything
>>>> 4001/tcp  open     unknown
>>>> 4002/tcp  open     mlchat-proxy
>>>> 4003/tcp  open     unknown
>>>> 4004/tcp  open     unknown
>>>> 4005/tcp  open     unknown
>>>> 4045/tcp  open     lockd
>>>> 4125/tcp  open     rww
>>>> 4224/tcp  open     xtell
>>>> 4242/tcp  open     unknown
>>>> 4343/tcp  open     unicall
>>>> 4443/tcp  open     pharos
>>>> 4446/tcp  open     unknown
>>>> 4449/tcp  open     unknown
>>>> 4662/tcp  open     edonkey
>>>> 4900/tcp  open     unknown
>>>> 4998/tcp  open     maybe-veritas
>>>> 5000/tcp  open     upnp
>>>> 5001/tcp  open     commplex-link
>>>> 5003/tcp  open     filemaker
>>>> 5004/tcp  open     unknown
>>>> 5009/tcp  open     airport-admin
>>>> 5033/tcp  open     unknown
>>>> 5050/tcp  open     mmcc
>>>> 5051/tcp  open     ida-agent
>>>> 5054/tcp  open     unknown
>>>> 5061/tcp  open     sip-tls
>>>> 5080/tcp  open     unknown
>>>> 5101/tcp  open     admdog
>>>> 5102/tcp  open     admeng
>>>> 5120/tcp  open     unknown
>>>> 5190/tcp  open     aol
>>>> 5200/tcp  open     unknown
>>>> 5214/tcp  open     unknown
>>>> 5221/tcp  open     unknown
>>>> 5226/tcp  open     unknown
>>>> 5280/tcp  open     unknown
>>>> 5298/tcp  open     unknown
>>>> 5357/tcp  open     unknown
>>>> 5405/tcp  open     pcduo
>>>> 5414/tcp  open     unknown
>>>> 5431/tcp  open     park-agent
>>>> 5432/tcp  open     postgresql
>>>> 5500/tcp  open     hotline
>>>> 5510/tcp  open     secureidprop
>>>> 5544/tcp  open     unknown
>>>> 5550/tcp  open     sdadmind
>>>> 5555/tcp  open     freeciv
>>>> 5631/tcp  open     pcanywheredata
>>>> 5633/tcp  open     unknown
>>>> 5678/tcp  open     unknown
>>>> 5679/tcp  open     activesync
>>>> 5718/tcp  open     unknown
>>>> 5800/tcp  open     vnc-http
>>>> 5801/tcp  open     vnc-http-1
>>>> 5810/tcp  open     unknown
>>>> 5822/tcp  open     unknown
>>>> 5825/tcp  open     unknown
>>>> 5850/tcp  open     unknown
>>>> 5859/tcp  open     unknown
>>>> 5862/tcp  open     unknown
>>>> 5877/tcp  open     unknown
>>>> 5901/tcp  open     vnc-1
>>>> 5903/tcp  open     vnc-3
>>>> 5904/tcp  open     unknown
>>>> 5907/tcp  open     unknown
>>>> 5911/tcp  open     unknown
>>>> 5915/tcp  open     unknown
>>>> 5952/tcp  open     unknown
>>>> 5963/tcp  open     unknown
>>>> 5987/tcp  open     unknown
>>>> 5989/tcp  open     unknown
>>>> 5998/tcp  open     ncd-diag
>>>> 5999/tcp  open     ncd-conf
>>>> 6000/tcp  open     X11
>>>> 6001/tcp  open     X11:1
>>>> 6002/tcp  open     X11:2
>>>> 6003/tcp  open     X11:3
>>>> 6004/tcp  open     X11:4
>>>> 6009/tcp  open     X11:9
>>>> 6025/tcp  open     unknown
>>>> 6059/tcp  open     X11:59
>>>> 6123/tcp  open     unknown
>>>> 6346/tcp  open     gnutella
>>>> 6389/tcp  open     unknown
>>>> 6543/tcp  open     mythtv
>>>> 6547/tcp  open     powerchuteplus
>>>> 6567/tcp  open     unknown
>>>> 6580/tcp  open     unknown
>>>> 6646/tcp  open     unknown
>>>> 6666/tcp  open     irc
>>>> 6667/tcp  open     irc
>>>> 6689/tcp  open     unknown
>>>> 6692/tcp  open     unknown
>>>> 6699/tcp  open     napster
>>>> 6788/tcp  open     unknown
>>>> 6789/tcp  open     ibm-db2-admin
>>>> 6839/tcp  open     unknown
>>>> 6881/tcp  open     bittorrent-tracker
>>>> 6969/tcp  open     acmsoda
>>>> 7000/tcp  open     afs3-fileserver
>>>> 7001/tcp  open     afs3-callback
>>>> 7002/tcp  open     afs3-prserver
>>>> 7004/tcp  open     afs3-kaserver
>>>> 7007/tcp  open     afs3-bos
>>>> 7019/tcp  open     unknown
>>>> 7070/tcp  filtered realserver
>>>> 7100/tcp  open     font-service
>>>> 7103/tcp  open     unknown
>>>> 7106/tcp  open     unknown
>>>> 7200/tcp  open     fodms
>>>> 7402/tcp  open     unknown
>>>> 7443/tcp  open     unknown
>>>> 7496/tcp  open     unknown
>>>> 7625/tcp  open     unknown
>>>> 7911/tcp  open     unknown
>>>> 7938/tcp  open     lgtomapper
>>>> 8000/tcp  open     http-alt
>>>> 8007/tcp  open     ajp12
>>>> 8010/tcp  open     xmpp
>>>> 8011/tcp  open     unknown
>>>> 8021/tcp  open     ftp-proxy
>>>> 8022/tcp  open     unknown
>>>> 8045/tcp  open     unknown
>>>> 8081/tcp  open     blackice-icecap
>>>> 8082/tcp  open     blackice-alerts
>>>> 8086/tcp  open     unknown
>>>> 8087/tcp  open     unknown
>>>> 8088/tcp  open     unknown
>>>> 8089/tcp  open     unknown
>>>> 8090/tcp  open     unknown
>>>> 8093/tcp  open     unknown
>>>> 8099/tcp  open     unknown
>>>> 8180/tcp  open     unknown
>>>> 8181/tcp  open     unknown
>>>> 8192/tcp  open     sophos
>>>> 8200/tcp  open     unknown
>>>> 8222/tcp  open     unknown
>>>> 8254/tcp  open     unknown
>>>> 8291/tcp  open     unknown
>>>> 8383/tcp  open     unknown
>>>> 8443/tcp  open     https-alt
>>>> 8500/tcp  open     unknown
>>>> 8600/tcp  open     unknown
>>>> 8651/tcp  open     unknown
>>>> 8701/tcp  open     unknown
>>>> 8800/tcp  open     unknown
>>>> 8873/tcp  open     unknown
>>>> 8994/tcp  open     unknown
>>>> 9000/tcp  open     cslistener
>>>> 9001/tcp  open     tor-orport
>>>> 9002/tcp  open     unknown
>>>> 9009/tcp  open     unknown
>>>> 9010/tcp  open     unknown
>>>> 9011/tcp  open     unknown
>>>> 9040/tcp  open     tor-trans
>>>> 9050/tcp  open     tor-socks
>>>> 9071/tcp  open     unknown
>>>> 9080/tcp  open     unknown
>>>> 9081/tcp  open     unknown
>>>> 9090/tcp  open     zeus-admin
>>>> 9091/tcp  open     unknown
>>>> 9099/tcp  open     unknown
>>>> 9100/tcp  open     jetdirect
>>>> 9101/tcp  open     jetdirect
>>>> 9102/tcp  open     jetdirect
>>>> 9103/tcp  open     jetdirect
>>>> 9110/tcp  open     unknown
>>>> 9200/tcp  open     wap-wsp
>>>> 9220/tcp  open     unknown
>>>> 9290/tcp  open     unknown
>>>> 9415/tcp  open     unknown
>>>> 9418/tcp  open     git
>>>> 9485/tcp  open     unknown
>>>> 9503/tcp  open     unknown
>>>> 9575/tcp  open     unknown
>>>> 9618/tcp  open     unknown
>>>> 9666/tcp  open     unknown
>>>> 9877/tcp  open     unknown
>>>> 9878/tcp  open     unknown
>>>> 9898/tcp  filtered unknown
>>>> 9900/tcp  open     iua
>>>> 9917/tcp  open     unknown
>>>> 9998/tcp  open     unknown
>>>> 10002/tcp open     unknown
>>>> 10004/tcp open     unknown
>>>> 10009/tcp open     unknown
>>>> 10010/tcp open     unknown
>>>> 10012/tcp open     unknown
>>>> 10025/tcp open     unknown
>>>> 10082/tcp open     amandaidx
>>>> 10180/tcp open     unknown
>>>> 10215/tcp open     unknown
>>>> 10243/tcp open     unknown
>>>> 10566/tcp open     unknown
>>>> 10616/tcp open     unknown
>>>> 10617/tcp open     unknown
>>>> 10626/tcp open     unknown
>>>> 10628/tcp open     unknown
>>>> 10629/tcp open     unknown
>>>> 10778/tcp open     unknown
>>>> 11110/tcp open     unknown
>>>> 11111/tcp open     unknown
>>>> 11967/tcp open     unknown
>>>> 12265/tcp open     unknown
>>>> 12345/tcp open     netbus
>>>> 13722/tcp open     netbackup
>>>> 13783/tcp open     netbackup
>>>> 14238/tcp open     unknown
>>>> 14441/tcp open     unknown
>>>> 14442/tcp open     unknown
>>>> 15000/tcp open     hydap
>>>> 15002/tcp open     unknown
>>>> 15004/tcp open     unknown
>>>> 15660/tcp open     unknown
>>>> 16000/tcp open     unknown
>>>> 16012/tcp open     unknown
>>>> 16018/tcp open     unknown
>>>> 16080/tcp open     osxwebadmin
>>>> 16113/tcp open     unknown
>>>> 16992/tcp open     unknown
>>>> 16993/tcp open     unknown
>>>> 17877/tcp open     unknown
>>>> 17988/tcp open     unknown
>>>> 18040/tcp open     unknown
>>>> 18101/tcp open     unknown
>>>> 19283/tcp open     unknown
>>>> 19780/tcp open     unknown
>>>> 20000/tcp open     unknown
>>>> 20005/tcp open     btx
>>>> 20031/tcp open     unknown
>>>> 20221/tcp open     unknown
>>>> 20828/tcp open     unknown
>>>> 21571/tcp open     unknown
>>>> 24800/tcp open     unknown
>>>> 25734/tcp open     unknown
>>>> 27352/tcp open     unknown
>>>> 27356/tcp open     unknown
>>>> 30000/tcp open     unknown
>>>> 30718/tcp open     unknown
>>>> 30951/tcp open     unknown
>>>> 31038/tcp open     unknown
>>>> 32770/tcp open     sometimes-rpc3
>>>> 32771/tcp open     sometimes-rpc5
>>>> 32773/tcp open     sometimes-rpc9
>>>> 32774/tcp open     sometimes-rpc11
>>>> 32775/tcp open     sometimes-rpc13
>>>> 32776/tcp open     sometimes-rpc15
>>>> 32777/tcp open     sometimes-rpc17
>>>> 32781/tcp open     unknown
>>>> 32782/tcp open     unknown
>>>> 32784/tcp open     unknown
>>>> 32785/tcp open     unknown
>>>> 33354/tcp open     unknown
>>>> 33899/tcp open     unknown
>>>> 34571/tcp open     unknown
>>>> 34572/tcp open     unknown
>>>> 35500/tcp open     unknown
>>>> 40911/tcp open     unknown
>>>> 41511/tcp open     unknown
>>>> 44176/tcp open     unknown
>>>> 44442/tcp open     coldfusion-auth
>>>> 44443/tcp open     coldfusion-auth
>>>> 49152/tcp open     unknown
>>>> 49153/tcp open     unknown
>>>> 49154/tcp open     unknown
>>>> 49155/tcp open     unknown
>>>> 49156/tcp open     unknown
>>>> 49157/tcp open     unknown
>>>> 49158/tcp open     unknown
>>>> 49159/tcp open     unknown
>>>> 49163/tcp open     unknown
>>>> 49175/tcp open     unknown
>>>> 49176/tcp open     unknown
>>>> 49400/tcp open     compaqdiag
>>>> 49999/tcp open     unknown
>>>> 50000/tcp open     iiimsf
>>>> 50003/tcp open     unknown
>>>> 50389/tcp open     unknown
>>>> 50500/tcp open     unknown
>>>> 51103/tcp open     unknown
>>>> 51493/tcp open     unknown
>>>> 52673/tcp open     unknown
>>>> 52822/tcp open     unknown
>>>> 52848/tcp open     unknown
>>>> 52869/tcp open     unknown
>>>> 54045/tcp open     unknown
>>>> 55055/tcp open     unknown
>>>> 55056/tcp open     unknown
>>>> 55555/tcp open     unknown
>>>> 55600/tcp open     unknown
>>>> 56738/tcp open     unknown
>>>> 60020/tcp open     unknown
>>>> 60443/tcp open     unknown
>>>> 61532/tcp open     unknown
>>>> 62078/tcp open     iphone-sync
>>>> 64623/tcp open     unknown
>>>> 64680/tcp open     unknown
>>>> 65000/tcp open     unknown
>>>>
>>>>
>>>> -------- Original Message --------
>>>> Subject: Re: [Openvas-discuss] mongoose vulnerability
>>>> From: Eero Volotinen <[email protected]>
>>>> To: Ali Khalfan <[email protected]>
>>>> CC: "[email protected]"
>>>> <[email protected]>
>>>> Date: Sun Mar 31 2013 21:00:37 GMT+0300 (AST)
>>>>
>>>>> Well, can you provide nmap scan results for that host? transparent http
>>>>> proxy on your network?
>>>>>
>>>>> Eero
>>>>>
>>>>>
>>>>> 2013/3/31 Ali Khalfan <[email protected]>
>>>>>
>>>>>> I keep getting a high vulnerability with the content NVT: Mongoose
>>>>>> Webserver Content-Length Denial of Service Vulnerability (OID:
>>>>>> 1.3.6.1.4.1.25623.1.0.900268) .
>>>>>>
>>>>>> I'm pretty sure there is no web server running on that port. Also, I
>> get
>>>>>> this vulnerability frequently when scanning other hosts.
>>>>>>
>>>>>>
>>>>>> Is it possible that this may be a false positive?
>>>>>>
>>>>>>
>>>>>> Thanks,
>>>>>> Ali
>>>>>> _______________________________________________
>>>>>> Openvas-discuss mailing list
>>>>>> [email protected]
>>>>>>
>>>>
>> https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss
>>>>>>
>>>>>
>>>>
>>>
>>
> 
_______________________________________________
Openvas-discuss mailing list
[email protected]
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

Reply via email to