Your Company Unfixed Vulnerabilities by Age - April 2011

Reference:
YC 201135
Hosts with Unfixed Vulnerabilities
6 High4 Medium0 Low10 Total


Ordered by Host

Host NameIP AddressCriticalRegionReportPortsHigh
Number Longest 
sql2.manc.yourcompany.com   SANS192.168.1.53EMEA  View 215
www.example.com   SANS192.168.0.112Asia  View 313
www.your_company.nl   SANS192.168.0.103EMEA  View 723
mail.example.com   SANS   URGENT192.168.0.111Asia  View 812
sql1.manc.yourcompany.com   SANS   OVERDUE192.168.1.52EMEA  View 322
dns0.example.com   SANS   OVERDUE192.168.0.110Asia  View 532

Ordered by Vulnerability

VulnerabilitySeverity SystemsLongest
High Risk Ports OpenHigh Risk35
Apache < 1.3.26 Chunked Encoding Vulnerability   SANSHigh Risk13
SNMP Default Community Names   SANSHigh Risk23
Sendmail < 8.12.8 Buffer Overrun   SANS   URGENTHigh Risk12
BIND < 8.2.3 Buffer Overrun   SANS   OVERDUEHigh Risk11
IIS WebDAV Buffer OverrunHigh Risk11
MySQL Database Accessible Without Password   OVERDUEHigh Risk11

Ordered by Contact

Collapse Expand / Collapse All

Name  SystemsReportTotal
Vulns
HighLongestMonths of
Exposure
cuthbert@yourcompany.comCollapse  2  Systems 3358
sql1.manc.yourcompany.com   SANS   OVERDUE192.168.1.52View2223
sql2.manc.yourcompany.com   SANS192.168.1.53View1155
janebloggs@yourcompany.comCollapse  4  Systems 77313
dns0.example.com   SANS   OVERDUE192.168.0.110View3324
www.your_company.nl   SANS192.168.0.103View2234
mail.example.com   SANS   URGENT192.168.0.111View1122
www.example.com   SANS192.168.0.112View1133
joe.bloggs@technicians.comCollapse  3  Systems 5539
dns0.example.com   SANS   OVERDUE192.168.0.110View3324
mail.example.com   SANS   URGENT192.168.0.111View1122
www.example.com   SANS192.168.0.112View1133
johndoe@yoursecurity.co.ukCollapse  1  System 1122
mail.example.com   SANS   URGENT192.168.0.111View1122
manager@yourcompany.comCollapse  2  Systems 4426
dns0.example.com   SANS   OVERDUE192.168.0.110View3324
mail.example.com   SANS   URGENT192.168.0.111View1122

Note: This report deals with unfixed vulnerabilities. A vulnerability is considered "unfixed for three scans" if it has appeared for four consecutive scans.

Scans by Westpoint Ltd