Application Security Inc. - Database Security, Monitoring, Assessment, Auditing, Encryption, and Regulatory Compliance.
 
 
 
home client login partner login purchasing info contact us
search:
Solutions Products Partners Support News & Events About Us
AppSec Inc Support

Security Updates - ASAP™ Updates
(Application Security Automatic Protection)

AppDetective™ Update 3.2.15 - 01 December 2003

NEW CHECKS (IBM DB2):

Multiple setuid buffer overflows (Pen Test, Audit, and OS Level)
Checks to determine if the database is vulnerable to one of several format string or buffer overflow vulnerabilities in the binaries db2start, db2stop, and db2govd.
Risk Level - High

CHECK ENHANCEMENTS (Sybase):

Sybase checks have been updated to account for the latest patches.

PRODUCT ENHANCEMENTS

  • Scheduler Reporting Enhancements
  • Command-line Option Enhancements for Scheduling and Tests

PRODUCT ENHANCEMENTS TO APPDETECTIVE FOR WEB APPLICATIONS

Extended Search Capabilities

Enhancements to customize values for all of the following checks:

  • File Enumeration
  • Directory Enumeration
  • File Backup
  • Directory Backup
  • Common Files

Enhancements to highlight issues within a web page with user definable Risk Level and Description features

Color-coding of HTML Source Code:

  • Green: HTML Comments
  • Violet: Form Tags
  • Blue: Form Elements Tags
  • Brown: Meta Tags
  • Orange: Scripts

Return to ASAP™ Updates Listing