# Interna - CRA Alarmas Colombia ----------------------------------- - [x] 55786 (2) - Oracle Database Unsupported Version Detection - [x] 42873 (14) - SSL Medium Strength Cipher Suites Supported (SWEET32) - [x] 35291 (8) - SSL Certificate Signed Using Weak Hashing Algorithm - [x] 20007 (2) - SSL Version 2 and 3 Protocol Detection - [x] 69552 (2) - Oracle TNS Listener Remote Poisoning - [x] 51192 (20) - SSL Certificate Cannot Be Trusted - [x] 57582 (17) - SSL Self-Signed Certificate - [x] 65821 (11) - SSL RC4 Cipher Suites Supported (Bar Mitzvah) - [x] 104743 (11) - TLS Version 1.0 Protocol Detection - [x] 121010 (11) - TLS Version 1.1 Protocol Detection - [x] 18405 (8) - Microsoft Windows Remote Desktop Protocol Server Man-in-the-Middle Weakness - [x] 57690 (8) - Terminal Services Encryption Level is Medium or Low - [x] 58453 (8) - Terminal Services Doesn't Use Network Level Authentication (NLA) Only - [x] 31705 (6) - SSL Anonymous Cipher Suites Supported - [x] 45411 (5) - SSL Certificate with Wrong Hostname - [x] 57608 (4) - SMB Signing not required - [x] 15901 (3) - SSL Certificate Expiry - [x] 124410 (3) - SSL Root Certification Authority Distrusted - [x] 78479 (2) - SSLv3 Padding Oracle On Downgraded Legacy Encryption Vulnerability (POODLE) - [x] 11213 (1) - HTTP TRACE / TRACK Methods Allowed - [x] 40984 (1) - Browsable Web Directories - [x] 136929 (1) - JQuery 1.2 < 3.5.0 Multiple XSS - [x] 30218 (8) - Terminal Services Encryption Level is not FIPS-140 Compliant - [x] 69551 (2) - SSL Certificate Chain Contains RSA Keys Less Than 2048 bits - [x] 34850 (1) - Web Server Uses Basic Authentication Without HTTPS (does not seem vulnerable) - [x] 70658 (1) - SSH Server CBC Mode Ciphers Enabled - [x] 83875 (1) - SSL/TLS Diffie-Hellman Modulus <= 1024 Bits (Logjam) - [x] 153953 (1) - SSH Weak Key Exchange Algorithms Enabled - [x] 85601 (6) - Web Application Cookies Not Marked HttpOnly - [x] 85602 (6) - Web Application Cookies Not Marked Secure -------------------- ## Manual test - [x] 10.57.0.20 - [ ] 10.57.0.18 - [ ] 10.57.0.17 - [ ] 10.57.0.16 - [ ] 10.57.204.82 - [ ] 10.54.247.72 - [ ] 10.57.0.15 - [ ] 10.10.20.98 - [ ] 10.57.0.19 - [ ] 10.10.20.107 - [ ] 10.10.20.108 - [ ] 172.30.57.25 - [ ] 10.57.0.24 - [ ] 10.57.15.37 - [ ] 10.57.28.18 - [ ] 10.57.204.83 - [ ] 10.57.0.14 ---------