RE: nessus which plug'in reports which vulnerability?

From: MARTIN M. Bénoni (benoni_martin_at_hotmail.com)
Date: 02/23/04

  • Next message: -=saravanan=-: "Re: Firewall Netscreen 10 - URGENTLY"
    To: cissper@yahoo.com.au, pen-test@securityfocus.com
    Date: Mon, 23 Feb 2004 10:22:25 +0000
    
    

    You can get the source of the plugins on your box (the exact place of these
    depend on your box, but they are *.nasl files, an "find / -name *.nasl |
    grep dns" should help you in your case), or here:
    http://cgi.nessus.org/plugins/dump.php3?viewby=family.

    An example of a code sourceis here:
    http://cvsweb.nessus.org/cgi-bin/cvsweb.cgi/~checkout~/nessus-plugins/scripts/frontpage_passwordless.nasl?content-type=text/plain
    (that's an example)

    Hope it can helps :)

    >From: "cissper" <cissper@yahoo.com.au>
    >To: <pen-test@securityfocus.com>
    >Subject: nessus which plug'in reports which vulnerability?
    >Date: Mon, 23 Feb 2004 13:24:22 +1100
    >
    >Hi all
    >
    >One of my favourite general purpose scanner is nessus for obvious
    >reasons. However, I do struggle with the interpretation and evaluation
    >of the results:
    >After the scan, I use the report function to generate a HTML type
    >report. The vulnerabilities listed in that report are not associated
    >with the plug-in's that detected them in the first place. How can I
    >possible know which plug-in detected which vulnerability? I need to
    >validate the identified vulnerabilities in order to eliminate false
    >positives, therefore I would like to know which script was used to
    >identify a certain vulnerability.
    >
    >One simple example:
    >nessus reports that a DNS zone transfer was possible. However, when I
    >try to manually perform a zone transfer, I am not able to do so!
    >The conclusion would be a false positive - but - maybe the script is
    >using a more sophisticated approach and is successful! The next step
    >would be to look at the plug' in which detected the vulnerability in the
    >first place - and I don't know which one it is.
    >
    >Any ideas guys?
    >
    >Thank you for your help.
    >
    >Kind regards,
    >cissper
    >
    >
    >
    >---------------------------------------------------------------------------
    >Free trial: Astaro Security Linux -- firewall with Spam/Virus Protection
    >
    >Protect your network with the comprehensive security solution that
    >integrates six applications for ease of use and lower TCO.
    >
    >Firewall - Virus protection - Spam protection - URL blocking - VPN
    >- Wireless security.
    >
    >Download 30-day evaluation at:
    >http://www.securityfocus.com/sponsor/Astaro_pen-test_040219
    >----------------------------------------------------------------------------
    >

    _________________________________________________________________
    The new MSN 8: smart spam protection and 2 months FREE*
    http://join.msn.com/?page=features/junkmail

    ---------------------------------------------------------------------------
    Free trial: Astaro Security Linux -- firewall with Spam/Virus Protection

    Protect your network with the comprehensive security solution that
    integrates six applications for ease of use and lower TCO.

    Firewall - Virus protection - Spam protection - URL blocking - VPN
    - Wireless security.

    Download 30-day evaluation at:
    http://www.securityfocus.com/sponsor/Astaro_pen-test_040219
    ----------------------------------------------------------------------------


  • Next message: -=saravanan=-: "Re: Firewall Netscreen 10 - URGENTLY"

    Relevant Pages

    • Re: Starting a Pen-Testing Career
      ... Perhaps my perceptions of the business are a bit naive, ... Buinsesses don't care about security and vulnerabilty and exposure. ... How else would they be able to provide such a report in isolation - ... written vulnerability scanner' to produce reports. ...
      (alt.computer.security)
    • RE: MBSA scanner
      ... the license must state clearly what is restricted. ... that referred to the nature of the vulnerability or exploit itself would be ... > all the suggestions on how to fix a vulnerability that a report might ... > nothing preventing Nessus, Internet Scanner, Cybercop, Retina, ...
      (Pen-Test)
    • Re: MBSA scanner
      ... all the suggestions on how to fix a vulnerability that a report might ... > Nessus is another example; the GPL has the same restrictions on distribution ... And also read the GPL FAQ: ...
      (Pen-Test)
    • D-Link Access Point DWL-900AP+ TFTP Vulnerability
      ... ETHEREANET-NCC Security Report EN-NCC-20021014-04 ... D-Link Access Point DWL-900AP+ TFTP Vulnerability ... the device features also an embedded TFTP ... receive a binary image of the device configuration which contains, ...
      (Bugtraq)
    • RE: Netstumbling
      ... to their network, ... If I find a vulnerability and expose it to access ... >> Are your vulnerability scans producing just another report? ... > Manage the entire remediation process with StillSecure VAM's ...
      (Pen-Test)