Application Security Inc. - Database Security, Monitoring, Assessment, Auditing, Encryption, and Regulatory Compliance.
 
 
 
home client login partner login purchasing info contact us
search:
Solutions Products Partners Support News & Events About Us

Security Updates - ASAP™ Updates
(Application Security Automatic Protection)

ASAP Update: 23 February 2009

ENHANCEMENTS IN THIS ASAP UPDATE INCLUDE:

Product: DbProtect Vulnerability Assessment Scan Engine (AppDetective)
MICROSOFT SQL SERVER
  • NEW! sp_replwritetovarbin limited memory overwrite vulnerability
    Examines if the sp_replwriteovarbin vulnerability exists.
    Risk Level - High

  • NEW! Unauthorized object permissions granted
    Examines for excessive object permissions.
    Risk Level - Medium

  • NEW! Permissions granted to GUEST
    Examines the permissions granted to GUEST.
    Risk Level - Medium

  • NEW! SQL Server Replication agent accounts
    Examines for excessive privilege assignments on accounts.
    Risk Level - Medium

  • NEW! SQL mail is enabled
    Examines if SQL mail is enabled or not.
    Risk Level - Medium

  • NEW! Application object owner account disabling
    Examines if the application object owner account is enabled or not.
    Risk Level - Medium

SYBASE
  • Updated! Latest patch not applied
    Examines for the latest patch applied for 15.0.3
    Risk Level - High
Return to ASAP™ Updates Listing