navigation bar left navigation bar right

Secunia CSI7
navigation left tab Advisories navigation right tab
navigation left tab Research navigation right tab
navigation left tab Forums navigation right tab
navigation left tab Create Profile navigation right tab
navigation left tab Our Commitment navigation right tab
Open Discussions
My Threads
Create Thread

Forum Thread: false insecures

You are currently viewing a forum thread in the Secunia Community Forum. Please note that opinions expressed here are not of Secunia but solely reflect those of the user who wrote it.

This thread was submitted in the following forum:

This thread has been marked as resolved.
mathematic false insecures
Member 30th Dec, 2011 03:54
Ranking: 0
Posts: 2
User Since: 30th Dec, 2011
System Score: N/A
Location: US
My last PSI sweep came up with 5 insecure programs. One is Firefox, where I have the latest version, but PSI says I have an older version. The other 4 are for various versions of Microsoft.Net framework, but Microsoft says I have the latest.

Post "RE: false insecures" has been selected as an answer.
mogs RE: false insecures
Expert Contributor 30th Dec, 2011 08:52
Score: 2265
Posts: 6,268
User Since: 22nd Apr 2009
System Score: 100%
Location: UK

The following post may help with the Firefox issue :- if you still have problems after reading ; please post the Troubleshoot Report as per :-

MS issued out of band patches yesterday for all versions of NET.
( See the CClips thread here post 123 )
When updating Microsoft Applications, it is a good idea to keep in mind that some Microsoft Updates do not "kick in" until after a reboot. Therefore, it is recommended to try following this procedure when installing Microsoft Updates:

1) Check Microsoft Update: install all security-related patches
2) Reboot
3) Repeat step 1: repeat step 2 if anything was installed at this step
4) Run a full rescan with the PSI

Hope the foregoing is of some help....regards,

Was this reply relevant?
mathematic RE: false insecures
Member 31st Dec, 2011 03:59
Score: 0
Posts: 2
User Since: 30th Dec 2011
System Score: N/A
Location: US
Problems were resolved.

1. Firefox - I happen to have (a little confusing) two different Firefox, the standard (Mozilla) version and an Avant version. Avant is a browser which is built as a front end for both Internet Explorer and Firefox. When Firefox was last updated, Avant neglected to update its call. I replaced it by the Mozilla call and that resolved the problem.

2.Microsft items - Secunia was aware of the existence of updates before they were distributed and flagged the insecurities. I received the updates (distributed today) and installed them. Secunia is now satisfied.
Was this reply relevant?
mogs RE: false insecures
Expert Contributor 31st Dec, 2011 08:47
Score: 2265
Posts: 6,268
User Since: 22nd Apr 2009
System Score: 100%
Location: UK

Glad you managed to get all your issues figured and sorted. I take it that means psi is showing a 100% can choose to show it on your posts by ticking Show System Score underneath the Signature box in My Profile, if you wish.
If you're satisfied that all is now in order, you can close this thread as the originator of pressing Accept.....that will prevent tag-on posts and reminder e mails.

Happy New Year !

Was this reply relevant?
alfalfatap RE: false insecures
Member 31st Dec, 2011 20:33
Score: 0
Posts: 1
User Since: 31st Dec 2011
System Score: N/A
Location: US
I also have false insecure indicators on .NET 1.x, 2.x, 3.x and 4.x. The updates supposedly missing are shown as applied both by Microsoft and Belarc Advisor. Removing and reinstalling PSI did not clear the condition. The Quick Facts message for each of these possibly suggests the nature of the problem. For example: "The version detected of Microsoft .NET Framework 1.x was 1.1.4322.2494 while the latest version including one or more security fixes is ."
Was this reply relevant?
Maurice Joyce RE: false insecures
Handling Contributor 31st Dec, 2011 21:55
Score: 11909
Posts: 9,120
User Since: 4th Jan 2009
System Score: N/A
Location: UK
It is not a good idea to "tag on" to someone else's thread. U will note that the originator (@mathematic) has solved his/her problem & can lock the thread at any time to prevent him/her from receiving update emails.

Much better that U create your own thread with more details of,for example:

1. The OS & SP in use.
2. Have U installed the latest hot fixes from Microsoft issued on the 29/12/2011.
3. Have U rebooted & carried out a full PSI scan? Has that changed the situation?
4. If the answer is yes & the problem remains what does the troubleshoot report say? If need be U can publish this to the Forum as follows:


From the DASHBOARD page click on SCAN RESULTS.

1. This will list all your programmes with a + to the left of each one.
2. Click the + sign next to the item that U want help with.
3. This will reveal the path under DETECTED INSTANCES.
4. Highlight it then copy (CTRL+C) then paste (CTRL+V)) that path back to the Forum.
4a Below DETECTED INSTANCES you will see You can double click this row for additional information & options>double click it>a box will appear>click TROUBLESHOOT REPORT>Now highlight the information revealed from START to END & copy it (CTRL+C) then post it to the Forum (CTRL+V)

The end result U post to the Forum should look like this:

Program Name:
Apple iTunes 10.x

Security State:

Download Link:

Instances Found:
C:\Program Files\iTunes\iTunes.exe, version:

Last System Scan (localtime):
3. Mar 2011, 16:47

Operating System:
Microsoft Windows XP Home Edition, Service Pack 3

Update 9 09:33 13/03/2011


Windows 7 SP1 64 Bit OS
HP Intel Pentium i7
IE 11 for Windows 7 SP1
Was this reply relevant?

This thread has been marked as locked.

 Products Solutions Customers Partner Resources Company
Vulnerability Intelligence Manager (VIM)
Corporate Software Inspector (CSI)
Personal Software Inspector (PSI)
Online Software Inspector (OSI)
Technology Partners
 About us

Secunia is a member of FIRST Secunia is a member of EDUcause Secunia is a member of The Open Group Secunia is a member of FS-ISAC
Secunia © 2002-2015 Secunia ApS - Rued Langgaards Vej 8, 4th floor, DK-2300 Copenhagen, Denmark - +45 7020 5144
Terms & Conditions and Copyright - Privacy - Report Vulnerability - Disclaimer
follow Secunia on Facebook follow Secunia on Twitter follow Secunia on LinkedIn follow Secunia on YouTube follow Secunia Xing follow Secunias RSS feed follow Secunia on Google+