------------------------------------------------- Vulnerability: Service: http (80/tcp) Severity: High It might be possible to make the remote IIS server execute arbitrary code by sending it a too long url ending in .htr. Hosts: 192.168.1.22 192.168.1.202 ------------------------------------------------- Vulnerability: Service: https (443/tcp) Severity: High The remote host seems to be using a version of OpenSSL which is older than 0.9.6e or 0.9.7-beta3 This version is vulnerable to a buffer overflow which, may allow an attacker to obtain a shell on this host. Hosts: 192.168.1.21