Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/cybervixy/vulnerability-management
Vulnerability ScannersVulnerability AnalysisConfiguration AuditingDevSecOpsLearning & EducationLabs & Practice
GitHubcybervixy/vulnerability-management

Vulnerability-Management

View Repository
161 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →

About

NGINX Security Hardening & Vulnerability Remediation Analysis of critical CVEs (CVE-2021-23017, HTTP/2 DoS flaws) in outdated NGINX versions, with actionable steps for mitigation: upgrades, HTTP/2 hardening, and patch automation. Includes Nessus scan validation and proactive monitoring strategies.

Share

Vulnerability Management Report

Prepared for: CyberTech Solutions

Prepared by: Victoria Simon

Date: April 10, 2024


1. Executive Summary

This report details the findings from a comprehensive vulnerability assessment conducted on CyberTech Solutions' Linux infrastructure and web applications using Nessus. The assessment included:

  • Credentialed scans of Linux servers
  • Web application vulnerability scans
  • Automated reporting configuration
  • Patch management via Ansible

Key findings include critical vulnerabilities in Nginx and outdated OpenSSH versions. Immediate patching and security hardening recommendations are provided.


2. Lab Objectives

  1. Perform credentialed vulnerability scans on Linux systems.
  2. Identify and analyze web application vulnerabilities.
  3. Configure Nessus for automated email reporting.
  4. Patch vulnerabilities using Ansible.
  5. Document findings for stakeholder review.

3. Tools and Resources Used

ToolPurpose
NessusVulnerability scanning and reporting
AnsibleAutomated patch management
Gmail SMTPAutomated email alerts
OpenSSHRemote server access
NginxWeb application hosting

4. Methodology

Task 1: Credentialed Scan Configuration

  1. SSH Setup:

    • Installed OpenSSH (sudo apt install openssh-server).
    • Configured Nessus with SSH credentials (username: root, password: kali).
    • Enabled privilege escalation via su.

     

    image.png

  2. Scan Results:

scanned ssh vulnerability score

scanned ssh vulnerability score

image.png

image.png

image.png

RECOMMENDATIONS Following the credentialed scan and vulnerability assessment on the Linux server and hosted applications, the following remediation steps are recommended to improve the organization’s security posture:

  1. System and Software Patching: • Upgrade OpenSSH to the latest secure version to address known vulnerabilities. • Apply the latest Linux kernel patches, including urgent updates such as CVE-2022-0185. • Upgrade Node.js to version 18.20.1 or later to mitigate risks like request smuggling, insecure randomness, and memory management vulnerabilities (e.g., CVE-2024-27980, CVE-2024-21891, CVE-2024-21892). • Enable automatic patch updates or integrate with a centralized patch management system to ensure timely application of security fixes.
  2. SSH Service Hardening • Disable weak SSH algorithms, ciphers (e.g., CBC, Arcfour), and MACs. • Enforce key-based authentication and disable password login where possible. • Configure custom SSH port and restrict SSH access using firewall rules or TCP wrappers. • Limit access to specific IPs and implement two-factor authentication (2FA) for remote connections.
  3. User and Access Control • Disable root login via SSH; use sudo for privilege elevation. • Remove unused or legacy user accounts and enforce strong password policies. • Set up account lockout mechanisms to prevent brute-force attacks. • Audit user groups and privileges to ensure least privilege is enforced.
  4. Host and Network Hardening • Disable unnecessary services and close unused ports. • Use hardening tools like Lynis, OpenSCAP, or CIS Benchmarks to enforce best practices. • Implement firewall rules to limit network exposure and prevent lateral movement.
  5. Monitoring, Logging, and Detection • Enable detailed logging for SSH, sudo, and system events. • Integrate logs with a SIEM platform for real-time monitoring and alerting. • Monitor for suspicious behavior and anomalous access patterns.
  6. Application and Dependency Security • Run npm audit or yarn audit to scan and fix Node.js dependencies. • Regularly test applications with dynamic and static analysis tools (DAST/SAST). • Use a Web Application Firewall (WAF) to block known web-based attacks.
  7. Backup and Recovery • Schedule regular backups of configurations and critical data. • Test disaster recovery and backup restoration procedures periodically.
  8. Security Awareness and Governance • Conduct regular security training for system administrators and developers. • Maintain updated security policies, procedures, and asset documentation. • Perform periodic vulnerability assessments and penetration tests to stay proactive.

Task 2: Web Application Scan

  1. Nginx Vulnerabilities:

image.png

image.png

image.png

image.png

image.png

image.png

  • CVE-2021-23017 (CVSS 7.5): Buffer overflow in Nginx 1.15.5.

    • Exploit: Remote DoS via crafted request.
    • Patch: Upgrade to Nginx ≥1.20.1.
  • CVE-2022-41741 (CVSS 8.2): HTTP/2 memory corruption.

  • CVE-2025- 2254

    • Exploit Available: Yes (Metasploit module).
  1. Vulnerability Analysis:
    • Exploit Ease: Low complexity (public exploits available).
    • Patch Dates:
      • CVE-2021-23017: Patched June 2021.
      • CVE-2022-41741: Patched October 2022.

Task 3: Automated Email Reporting

  1. SMTP Configuration:

    • Host: smtp.gmail.com (Port: 587, TLS).

    image.png

    • Used Gmail app password for authentication.

    image.png

    image.png

    • Test email successfully sent to stakeholders.

    nessus sent an email. meaning, it worked perfectly.

    nessus sent an email. meaning, it worked perfectly.

Task 4: Patch Management

Download Tool