martes, 29 de septiembre de 2015

Unidad 2 Tarea 1

  1.  
Sistema Operativo: OpenBSD 2.6-beta
Usuario: fake
Password: user
comandos: ls, ls -a, /sbin/ping www.yahoo.com, exit

  1. 2.
Paquete 2
Verisign.com
Identidad del servidor.

  1. 3
Paquete 20
Toda la comunicacion esta cifrada.
No

viernes, 25 de septiembre de 2015

Unidad 1 tarea 3

Buenas a todos:

He probado a crear un certficado con Kleopatra y despues se lo he pasado a OscarAkaElvis. El ha hecho lo mismo. Nos hemos enviado un fichero encriptado y comprobado que podemos desencriptarlo.
Para encriptar y firmar el fichero, seleccionas el certificado de la persona a quien se lo vas a enviar.

Importante, si os falla la verificacion de la firma, es porque el certificado que importeis (de esa persona) ha de estar en trusted certificates.

Un saludo a todos

martes, 22 de septiembre de 2015

Tarea 2 Unidad 1

http://www.elladodelmal.com/
http://www.dragonjar.org/
http://www.elhacker.net/

Tarea 1 Unidad 1

Pagina a escanear:

www.cbjuandeaustria.com

Vulnerabilidades encontradas: (pongo resultado obtenido en nmap y despues el resultado obtenido en la página de NVD)

21/tcp   open  ftp        ProFTPD 1.3.1

CVE-2009-0543
Summary: ProFTPD Server 1.3.1, with NLS support enabled, allows remote attackers to bypass SQL injection protection mechanisms via invalid, encoded multibyte characters, which are not properly handled in (1) mod_sql_mysql and (2) mod_sql_postgres.
Published: 2/12/2009 11:30:00 AM
CVSS Severity: 6.8 MEDIUM
CVE-2009-0542
Summary: SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remote attackers to execute arbitrary SQL commands via a "%" (percent) character in the username, which introduces a "'" (single quote) character during variable substitution by mod_sql.
Published: 2/12/2009 11:30:00 AM
CVSS Severity: 7.5 HIGH
CVE-2008-4242
Summary: ProFTPD 1.3.1 interprets long commands from an FTP client as multiple commands, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and execute arbitrary FTP commands via a long ftp:// URI that leverages an existing session from the FTP client implementation in a web browser.
Published: 9/25/2008 3:25:18 PM
CVSS Severity: 6.8 MEDIUM 
 
 
106/tcp  open  pop3pw     poppassd
 
CVE-2005-3098
Summary: poppassd in Qualcomm qpopper 4.0.8 allows local users to modify arbitrary files and gain privileges via the -t (trace file) command line argument.
Published: 9/28/2005 7:03:00 PM
CVSS Severity: 4.6 MEDIUM
CVE-2002-2024
Summary: Horde IMP 2.2.7 allows remote attackers to obtain the full web root pathname via an HTTP request for (1) poppassd.php3, (2) login.php3?reason=chpass2, (3) spelling.php3, and (4) ldap.search.php3?ldap_serv=nonsense which leaks the information in error messages.
Published: 12/31/2002 12:00:00 AM
CVSS Severity: 5.0 MEDIUM
 
 
110/tcp  open  pop3       Courier pop3d
 
CVE-2007-2173
Summary: Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r2, and 4.1.x before 4.1.2-r1, on Gentoo Linux allows remote attackers to execute arbitrary commands via the XMAILDIR variable, related to the LOGINRUN variable.
Published: 4/24/2007 12:19:00 PM
CVSS Severity: 10.0 HIGH
 
 
465/tcp  open  ssl/smtp   qmail smtpd
 
CVE-2011-1431
Summary: The STARTTLS implementation in qmail-smtpd.c in qmail-smtpd in the netqmail-1.06-tls patch for netqmail 1.06 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.
Published: 3/16/2011 6:55:04 PM
CVSS Severity: 6.8 MEDIUM
 
 
8443/tcp open  ssl/http   Apache httpd (PHP 5.2.6)
 
CVE-2008-3658
Summary: Buffer overflow in the imageloadfont function in ext/gd/gd.c in PHP 4.4.x before 4.4.9 and PHP 5.2 before 5.2.6-r6 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
Published: 8/14/2008 8:41:00 PM
CVSS Severity: 7.5 HIGH
CVE-2008-3660
Summary: PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial of service (crash) via a request with multiple dots preceding the extension, as demonstrated using foo..php.
Published: 8/14/2008 8:41:00 PM
CVSS Severity: 5.0 MEDIUM
CVE-2008-3245
Summary: SQL injection vulnerability in phpHoo3.php in phpHoo3 4.3.9, 4.3.10, 4.4.8, and 5.2.6 allows remote attackers to execute arbitrary SQL commands via the viewCat parameter.
Published: 7/21/2008 12:41:00 PM
CVSS Severity: 7.5 HIGH
CVE-2008-0599
Summary: The init_request_info function in sapi/cgi/cgi_main.c in PHP before 5.2.6 does not properly consider operator precedence when calculating the length of PATH_TRANSLATED, which might allow remote attackers to execute arbitrary code via a crafted URI.
Published: 5/5/2008 1:20:00 PM
CVSS Severity: 10.0 HIGH
CVE-2008-2050
Summary: Stack-based buffer overflow in the FastCGI SAPI (fastcgi.c) in PHP before 5.2.6 has unknown impact and attack vectors.
Published: 5/5/2008 1:20:00 PM
CVSS Severity: 10.0 HIGH
CVE-2008-2051
Summary: The escapeshellcmd API function in PHP before 5.2.6 has unknown impact and context-dependent attack vectors related to "incomplete multibyte chars."
Published: 5/5/2008 1:20:00 PM
CVSS Severity: 10.0 HIGH