PCI DSS Requirement Network Patching Status Report

PCI DSS Requirement 6.2 - Network Patching Status Report Description This report illustrates the status of patches and service packs for host machin...
Author: Ariel Hodges
7 downloads 0 Views 276KB Size
PCI DSS Requirement 6.2 - Network Patching Status Report

Description

This report illustrates the status of patches and service packs for host machines on the network.

Generated on

6/3/2011 12:37:44 PM

Generated by

calin

Advanced Settings Report items

All

Target

Entire Network

Filters

(Vulnerability Category 'Missing Service Packs' or Vulnerability Category 'Missing Microsoft Patches' or Vulnerability Category 'Missing Non-Microsoft Patches')

Grouped by

'Computer' - Ascending AND 'Vulnerability Severity' - Descending

Sorted by

'Vulnerability Product' - Ascending

Reviewed by __________________

Reviewed Date _______________

Signature ____________

PCI DSS Requirement 6.2 - Network Patching Status Vulnerability Distribution by Severity

Vulnerability Distribution by Computer Computer/IP

High

Medium

Low

Potential

BACKUP1

8

0

0

0

JAKE04

14

0

0

0

METEO

3

0

0

0

MIRA

7

0

0

0

NODE1

13

2

1

0

STORAGE

16

2

1

0

SYSADMIN01

54

2

1

0

TMSSP

7

0

1

0

VM2K8

1

0

0

0

Vulnerability Listing by Computer BACKUP1

High Adobe Flash Player 10.2.159.1 Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-07 Adobe Flash Player 10 2011-04-15

Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2467174) Category Description Product Timestamp

Missing Microsoft Patches 2467174 Developer Tools, Runtimes, and Redistributables 2011-04-21

Security Update for Microsoft Visual Studio 2008 Service Pack 1 (KB2465361) Category Description Product Timestamp

Missing Microsoft Patches 2465361 Developer Tools, Runtimes, and Redistributables 2011-04-21

Security Update for Microsoft Visual C++ 2005 Service Pack 1 Redistributable Package (KB2467175) Category Description Product Timestamp

Missing Microsoft Patches 2467175 Developer Tools, Runtimes, and Redistributables 2011-04-21

Page: 2 of 17

Security Update for Microsoft Visual C++ 2005 Service Pack 1 Redistributable Package (KB2467175)

PCI DSS Requirement 6.2Missing - Network Status Category MicrosoftPatching Patches Description

2467175

Timestamp

2011-04-21

Vulnerability Product Listing by Computer Developer Tools, Runtimes, and Redistributables Mozilla Firefox 4.0.1 (en-US) Category Description Product Timestamp

Missing Non-Microsoft Patches MFirefox 4.0.1 Firefox 2011-04-28

Java Runtime Environment 6.0 Update 25 Category Description Product Timestamp

Missing Non-Microsoft Patches JAVA6025 Java Runtime Environment 2011-04-22

Mozilla Thunderbird 3.1.10 (en-US) Category Description Product Timestamp

Missing Non-Microsoft Patches MTBird 3.1.10 Thunderbird 2011-04-28

Windows Malicious Software Removal Tool x64 - May 2011 (KB890830) Category Description Product Timestamp

Missing Microsoft Patches 890830 Windows 2011-05-10

JAKE04

High 7-Zip 9.20 exe Category Description Product Timestamp

Missing Non-Microsoft Patches IP7Zip920 7-Zip 2010-11-18

Adobe Air 2.6.0.19140 Category Description Product Timestamp

Missing Non-Microsoft Patches ADOBEAIR26 Adobe Air 2011-04-15

Adobe Flash Player 10.2.159.1 Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-07 Adobe Flash Player 10 2011-04-15

Adobe Flash Player 10.2.159.1 for Firefox, Safari, Opera Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-07 Adobe Flash Player 10 2011-04-15

Adobe Reader 9.4.2 Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-03 Adobe Reader 2011-02-08

Page: 3 of 17

PCI DSS Requirement 6.2 - Network Patching Status Adobe Reader 9.4.2

Vulnerability Category Listing by Computer Missing Non-Microsoft Patches Description Product Timestamp

APSB11-03 Adobe Reader 2011-02-08

Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2467174) Category Description Product Timestamp

Missing Microsoft Patches 2467174 Developer Tools, Runtimes, and Redistributables 2011-04-21

Security Update for Microsoft Visual C++ 2005 Service Pack 1 Redistributable Package (KB2467175) Category Description Product Timestamp

Missing Microsoft Patches 2467175 Developer Tools, Runtimes, and Redistributables 2011-04-21

Mozilla Firefox 3.6.17 (en-US) Category Description Product Timestamp

Missing Non-Microsoft Patches MFirefox 3.6.17 Firefox 2011-04-28

Mozilla Firefox 4.0.1 (en-US) Category Description Product Timestamp

Missing Non-Microsoft Patches MFirefox 4.0.1 Firefox 2011-04-28

Java Runtime Environment 6.0 Update 25 Category Description Product Timestamp

Missing Non-Microsoft Patches JAVA6025 Java Runtime Environment 2011-04-22

Security Update for Microsoft Office PowerPoint 2007 (KB2535818) Category Description Product Timestamp

Missing Microsoft Patches 2535818 Office 2011-05-10

Skype 5.3.0.111 Category Description Product Timestamp

Missing Non-Microsoft Patches SKYPE530111 Skype 2011-04-20

Windows 7 Service Pack 1 (KB976932) Category Description Product Timestamp

Missing Service Packs 976932 Windows 2011-04-12

Windows Malicious Software Removal Tool - May 2011 (KB890830) Category Description Product Timestamp

Missing Microsoft Patches 890830 Windows 2011-05-10

Page: 4 of 17

PCI DSS Requirement 6.2 - Network Patching Status Vulnerability Listing by Computer METEO

High Adobe Flash Player 10.2.159.1 Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-07 Adobe Flash Player 10 2011-04-15

Microsoft SQL Server 2008 Service Pack 2 (KB2285068) Category Description Product Timestamp

Missing Service Packs 2285068 SQL Server 2010-11-23

Windows Malicious Software Removal Tool x64 - May 2011 (KB890830) Category Description Product Timestamp

Missing Microsoft Patches 890830 Windows 2011-05-10

MIRA

High Adobe Air 2.6.0.19140 Category Description Product Timestamp

Missing Non-Microsoft Patches ADOBEAIR26 Adobe Air 2011-04-15

Adobe Flash Player 10.2.159.1 Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-07 Adobe Flash Player 10 2011-04-15

Adobe Flash Player 10.2.159.1 for Firefox, Safari, Opera Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-07 Adobe Flash Player 10 2011-04-15

Java Runtime Environment 6.0 Update 25 Category Description Product Timestamp

Missing Non-Microsoft Patches JAVA6025 Java Runtime Environment 2011-04-22

Page: 5 of 17

PCI DSS Requirement 6.2 - Network Patching Status Vulnerability Listing by Computer Java Runtime Environment 6.0 Update 25 Category Description Product Timestamp

Missing Non-Microsoft Patches JAVA6025 Java Runtime Environment 2011-04-22

Security Update for Microsoft Office PowerPoint 2007 (KB2535818) Category Description Product Timestamp

Missing Microsoft Patches 2535818 Office 2011-05-10

Microsoft SQL Server 2008 Service Pack 2 (KB2285068) Category Description Product Timestamp

Missing Service Packs 2285068 SQL Server 2010-11-23

Windows Malicious Software Removal Tool x64 - May 2011 (KB890830) Category Description Product Timestamp

Missing Microsoft Patches 890830 Windows 2011-05-10

NODE1

High Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2467174) Category Description Product Timestamp

Missing Microsoft Patches 2467174 Developer Tools, Runtimes, and Redistributables 2011-04-21

Update for Microsoft Silverlight (KB2526954) Category Description Product Timestamp

Missing Microsoft Patches 2526954 Silverlight 2011-04-20

Security Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2446708) Category Description Product Timestamp

Missing Microsoft Patches 2446708 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2506212) Category Description Product Timestamp

Missing Microsoft Patches 2506212 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2506223) Category Description Product Timestamp

Missing Microsoft Patches 2506223 Windows 2011-04-12

Page: 6 of 17

PCI DSS Requirement 6.2 Server - Network Patching Status Security Update for Windows 2008 x64 Edition (KB2506223) Category

Missing Microsoft Patches

Product Timestamp

Windows 2011-04-12

Vulnerability Listing by Computer Description 2506223

Security Update for Windows Server 2008 x64 Edition (KB2509553) Category Description Product Timestamp

Missing Microsoft Patches 2509553 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2507618) Category Description Product Timestamp

Missing Microsoft Patches 2507618 Windows 2011-04-12

Windows Malicious Software Removal Tool x64 - May 2011 (KB890830) Category Description Product Timestamp

Missing Microsoft Patches 890830 Windows 2011-05-10

Security Update for .NET Framework 3.5 SP1, Windows Vista SP2, and Windows Server 2008 SP2 for x64-based Systems (KB2449742) Category Description Product Timestamp

Missing Microsoft Patches 2449742 Windows 2011-05-10

Security Update for Windows Server 2008 x64 Edition (KB2510531) Category Description Product Timestamp

Missing Microsoft Patches 2510531 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2511455) Category Description Product Timestamp

Missing Microsoft Patches 2511455 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2508429) Category Description Product Timestamp

Missing Microsoft Patches 2508429 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2412687) Category Description Product Timestamp

Missing Microsoft Patches 2412687 Windows 2011-04-12

Medium Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 x64 Edition (KB2497640) Category Description Product Timestamp

Missing Microsoft Patches 2497640 Windows 2011-04-12

Cumulative Security Update for ActiveX Killbits for Windows Server 2008 x64 Edition (KB2508272) Category Description Product Timestamp

Missing Microsoft Patches 2508272 Windows 2011-04-12

Page: 7 of 17

PCI DSS Requirement 6.2 - Network Patching Status Vulnerability Listing by Computer

Low Security Update for Windows Server 2008 x64 Edition (KB2503658) Category Description Product Timestamp

Missing Microsoft Patches 2503658 Windows 2011-04-12

STORAGE

High 7-Zip 9.20 msi for 64-bit Windows Category Description Product Timestamp

Missing Non-Microsoft Patches IP7Zip920 7-Zip 2010-11-18

Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2467174) Category Description Product Timestamp

Missing Microsoft Patches 2467174 Developer Tools, Runtimes, and Redistributables 2011-04-21

Update for Microsoft Silverlight (KB2526954) Category Description Product Timestamp

Missing Microsoft Patches 2526954 Silverlight 2011-04-20

Microsoft SQL Server 2008 Service Pack 2 (KB2285068) Category Description Product Timestamp

Missing Service Packs 2285068 SQL Server 2010-11-23

Security Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2446708) Category Description Product Timestamp

Missing Microsoft Patches 2446708 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2506212) Category Description Product Timestamp

Missing Microsoft Patches 2506212 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2506223) Category Description Product Timestamp

Missing Microsoft Patches 2506223 Windows 2011-04-12

Page: 8 of 17

PCI DSS Requirement 6.2 Server - Network Patching Status Security Update for Windows 2008 x64 Edition (KB2506223) Category

Missing Microsoft Patches

Product Timestamp

Windows 2011-04-12

Vulnerability Listing by Computer Description 2506223

Security Update for Windows Server 2008 x64 Edition (KB967723) Category Description Product Timestamp

Missing Microsoft Patches 967723 Windows 2009-09-08

Security Update for Windows Server 2008 x64 Edition (KB2509553) Category Description Product Timestamp

Missing Microsoft Patches 2509553 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2507618) Category Description Product Timestamp

Missing Microsoft Patches 2507618 Windows 2011-04-12

Windows Malicious Software Removal Tool x64 - May 2011 (KB890830) Category Description Product Timestamp

Missing Microsoft Patches 890830 Windows 2011-05-10

Security Update for .NET Framework 3.5 SP1, Windows Vista SP2, and Windows Server 2008 SP2 for x64-based Systems (KB2449742) Category Description Product Timestamp

Missing Microsoft Patches 2449742 Windows 2011-05-10

Security Update for Windows Server 2008 x64 Edition (KB2510531) Category Description Product Timestamp

Missing Microsoft Patches 2510531 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2511455) Category Description Product Timestamp

Missing Microsoft Patches 2511455 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2508429) Category Description Product Timestamp

Missing Microsoft Patches 2508429 Windows 2011-04-12

Security Update for Windows Server 2008 x64 Edition (KB2412687) Category Description Product Timestamp

Missing Microsoft Patches 2412687 Windows 2011-04-12

Medium Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 x64 Edition (KB2497640) Category Description Product Timestamp

Missing Microsoft Patches 2497640 Windows 2011-04-12

Page: 9 of 17

PCI DSS Requirement 6.2 - Network Patching Status Vulnerability Listing by Computer Cumulative Security Update for ActiveX Killbits for Windows Server 2008 x64 Edition (KB2508272) Category Description Product Timestamp

Missing Microsoft Patches 2508272 Windows 2011-04-12

Low Security Update for Windows Server 2008 x64 Edition (KB2503658) Category Description Product Timestamp

Missing Microsoft Patches 2503658 Windows 2011-04-12

SYSADMIN01

High Adobe Shockwave Player 11.5.9.620 Category Description Product Timestamp

Missing Non-Microsoft Patches APSB11-01 Adobe Shockwave Player 2011-02-08

Security Update for Microsoft Visual C++ 2010 Redistributable Package (KB2467173) Category Description Product Timestamp

Missing Microsoft Patches 2467173 Developer Tools, Runtimes, and Redistributables 2011-04-21

Security Update for Microsoft Visual Studio 2008 Service Pack 1 (KB2465361) Category Description Product Timestamp

Missing Microsoft Patches 2465361 Developer Tools, Runtimes, and Redistributables 2011-04-21

Security Update for Microsoft Visual C++ 2005 Service Pack 1 Redistributable Package (KB2467175) Category Description Product Timestamp

Missing Microsoft Patches 2467175 Developer Tools, Runtimes, and Redistributables 2011-04-21

Java Runtime Environment 6.0 x64 Update 25 Category Description Product Timestamp

Missing Non-Microsoft Patches JAVA6025 Java Runtime Environment 2011-04-22

Java Runtime Environment 6.0 Update 25 Category Description Product Timestamp

Missing Non-Microsoft Patches JAVA6025 Java Runtime Environment 2011-04-22

Page: 10 of 17