<?xml version="1.0" encoding="iso-8859-1" ?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/images/lists/rssstyle2.xsl"?>
<rss version="2.0">
<channel>
<title>Nessus | plugins</title>
<description>Mailing List Archive by Gossamer Threads</description>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/</link>
<language>en-us</language>
<copyright>(c) Gossamer Threads Inc. All rights reserved.</copyright>
<lastBuildDate>13 Feb  2012 03:55:50 -0800</lastBuildDate>
<ttl>120</ttl>
<image>
<title>Gossamer Threads | Nessus | plugins</title>
<width>75</width>
<height>23</height>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/</link>
<url>http://www.gossamer-threads.com/images/lists/rss_logo.jpg</url>
</image>
<item>
<title>Fixes to nmap.nasl</title>
<description>Hello! Here&amp;#039;s the fixes against nmap.nasl found on this link: http://www.nessus.org/documentation/nmap.nasl Here&amp;#039;s the link to the diff (it&amp;#039;s in att</description>
<pubDate>14 Mar  2009 04:59:38 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33747</link>
</item><item>
<title>False positive in frontpage_chunked_overflow.nasl</title>
<description>Plugin frontpage_chunked_overflow.nasl (version 1.18) reports a false positive if the IIS web server is configured not to return 404.  The following</description>
<pubDate>10 Mar  2009 20:12:28 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33744</link>
</item><item>
<title>Low severity and CVSS score in ssh1_proto_enabled.nasl</title>
<description>Plugin ssh1_proto_enabled.nasl (version 1.18) rates CVE-2001-0361 as Low with CVSS 2.6, which seems rather odd, especially considering that it shoul</description>
<pubDate>10 Mar  2009 20:12:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33743</link>
</item><item>
<title>Extending the generic web application vulnerability checks</title>
<description>Hello all, I am currently investigating the possibilities of Nessus with regards to testing web applications on generic vulnerabilities. My goal is t</description>
<pubDate>09 Mar  2009 07:47:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33741</link>
</item><item>
<title>CanSecWest 2009 Speakers and Dojo courses (Mar 14-20)</title>
<description>Final Speaker Lineup for CanSecWest 2009 (March 18-20): =============================================== The Smart-Phones Nightmare - Sergio &amp;#039;shadown&amp;#039;</description>
<pubDate>15 Feb  2009 18:52:51 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33716</link>
</item><item>
<title>Windows Compliance settings</title>
<description>Don&amp;#039;t know if this is the proper way to ask this but I&amp;#039;m in the process of trying to convince MGMT to utilize nessus Windows compliance .audit file</description>
<pubDate>12 Feb  2009 06:45:39 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33710</link>
</item><item>
<title>openssh 50.nasl and paranoia</title>
<description>I have just run Nessus with the paranoid option against three systems. I believe all three are instances of Firewall-1 (ports 264/tcp and 500/udp open</description>
<pubDate>11 Feb  2009 09:48:52 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33706</link>
</item><item>
<title>setting to disable a plugin by default</title>
<description>is there a setting for plugins to disable them by default? the nikto.nasl has a nice checkbox.. any other way? I have one with reverse logic (errors i</description>
<pubDate>11 Feb  2009 08:22:10 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33705</link>
</item><item>
<title>Tenable patch superseded co relation</title>
<description>Hi guys,   PFA. This contains the consolidated list of scans performed for a single subnet last day. The items marked in RED have patch mismatch as</description>
<pubDate>02 Feb  2009 21:35:36 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33681</link>
</item><item>
<title>nasl question : split and arrays</title>
<description>Hello, I have a string that looks like this mystring=&amp;quot;value1=1 value2=a value3=cd value4=jj&amp;quot;; I would like to be able to put this in individual arr</description>
<pubDate>31 Jan  2009 06:29:32 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33676</link>
</item><item>
<title>writing new plugin</title>
<description>Hi all, I have started writing a new nessus plugin in nasl. 1. When I run the plugin with nasl (at a command line), I get &amp;quot;A non-authenticated scrip</description>
<pubDate>30 Jan  2009 03:01:32 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33670</link>
</item><item>
<title>Nessus plugin for detecting SNMP community string leaks</title>
<description>The attached plugin detects presence of SNMP community strings in SNMP MIBs. In this sense it eclipses the functionality of snmp_vacm.nasl while pro</description>
<pubDate>25 Jan  2009 11:06:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33652</link>
</item><item>
<title>From mailing lists to web forums</title>
<description>Hello everyone, For 10 years now, the Nessus user base has been supported with the use  of mailing lists as a medium to communicate with the communi</description>
<pubDate>12 Jan  2009 09:08:00 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33637</link>
</item><item>
<title>Stop scan when can&amp;#039;t login</title>
<description>I&amp;#039;ve written a few plugins that check if they can successfully login via SSH - checks return value of ssh_open_connection(), empty username/password</description>
<pubDate>05 Jan  2009 15:41:49 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33608</link>
</item><item>
<title>up-to-date nasl reference manual?</title>
<description>Dear All, Is there an up-to-date reference manual for nasl ? I tried to improve the plugin 21725 (Symantec Anti-Virus check) so it will check that t</description>
<pubDate>05 Jan  2009 15:25:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33607</link>
</item><item>
<title>Broken cipher list retrieval in plugins 26928, 31705</title>
<description>Plugins ssl_anon_ciphers.nasl and ssl_weak_supported_ciphers.nasl obtain the list of supported SSL ciphers via get_kb_list(). Both of these plugins</description>
<pubDate>31 Dec  2008 08:35:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33586</link>
</item><item>
<title>su/sudo issues with SSH</title>
<description>Hi, First post, but I&amp;#039;ve been using Nessus, nasl&amp;#039;s and .audit files for a couple of years now. I&amp;#039;ve recently been writing a few plugins that requir</description>
<pubDate>28 Dec  2008 12:36:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33572</link>
</item><item>
<title>plugin 11112</title>
<description>This generic ftp traversal test uses anonymous:nessus@&amp;lt;hostname&amp;gt;. I found an ftp server this morning with a traversal vulnerability, but it doesn&amp;#039;t</description>
<pubDate>24 Dec  2008 10:18:57 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33569</link>
</item><item>
<title>Re: Some questions about running compliance checks on	linux servers</title>
<description>Hello Frank, Comments inline:  Frank_Kenisky@psc.uscourts.gov wrote: &amp;gt; &amp;gt; I&amp;#039;ve used Nessus &amp;quot;free&amp;quot; tool for almost 8 years now. I just recently &amp;gt; p</description>
<pubDate>16 Dec  2008 07:16:36 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33544</link>
</item><item>
<title>Some questions about running compliance checks on linux servers</title>
<description>I&amp;#039;ve used Nessus &amp;quot;free&amp;quot; tool for almost 8 years now. I just recently purchased the commercial version so I can utilize the .audit files. After runn</description>
<pubDate>15 Dec  2008 08:15:14 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33541</link>
</item><item>
<title>Bug in os_fingerprint_http.nasl</title>
<description>There is a minor bug in script os_fingerprint_http.nasl. The following patch against version 1.26 resolves the issue: --- os_fingerprint_http.nasl.or</description>
<pubDate>04 Dec  2008 08:45:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33497</link>
</item><item>
<title>Bug in hastymail_attachment_exec.nasl</title>
<description>There is a typo bug in script hastymail_attachment_exec.nasl. The following patch against version 1.5 resolves the issue: --- hastymail_attachment_ex</description>
<pubDate>04 Dec  2008 08:29:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33496</link>
</item><item>
<title>Broken 404 parsing in cross_site_scripting.nasl</title>
<description>Recently script cross_site_scripting.nasl got modified to request URLs via http_send_recv3(). The script attempts to retrieve mostly non-existent UR</description>
<pubDate>04 Dec  2008 08:17:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33495</link>
</item><item>
<title>phpMyAdmin_remote_cmd.nasl (script id 15748)</title>
<description>According to the CVE-2004-2630[1] and the advisory from the phpMyAdmin team[2] only phpMyAdmin versions 2.5.0 to 2.6.0-pl1 have the command executio</description>
<pubDate>04 Dec  2008 06:51:17 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33494</link>
</item><item>
<title>CanSecWest 2009 CFP (March 18-20 2009, Deadline December 8 2008)</title>
<description>Call For Papers     The CanSecWest 2009 CFP is now open.     Deadline is December 8th, 2008. CanSecWest CALL FOR PAPERS     VANCOUVER, Canada -- T</description>
<pubDate>24 Nov  2008 21:21:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33442</link>
</item><item>
<title>plugin for detecting shared printers</title>
<description>anyone have (or perhaps I just can&amp;#039;t find it) a plugin that detects that a printer is locally attached and is shared? -- Doug Nordwall Unix, Network</description>
<pubDate>10 Nov  2008 08:26:45 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33403</link>
</item><item>
<title>12253 Mailman &amp;lt; 2.1.5 Password Retrieval - false positives</title>
<description>The latest version of GNU Mailman is currently 2.1.11, which is causing this plugin (12253 Mailman &amp;lt; 2.1.5 Password Retrieval) to false positive. I&amp;#039;v</description>
<pubDate>04 Nov  2008 09:11:49 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33352</link>
</item><item>
<title>34265 ProFTPD CSRF - CVSS score inconsistency</title>
<description>We just noticed that the CVSS score given for 34265 ProFTPD Cross-Site Request Forgery differs between the NVD and the Nessus plugin: &amp;gt;From the NVD:</description>
<pubDate>04 Nov  2008 03:28:08 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33349</link>
</item><item>
<title>Sanity check please? False positive with Citrix XSS plugin (#12301)</title>
<description>I wanted to do a quick sanity check here before heading over to bugzilla. I have a host that&amp;#039;s being flagged by plugin 12301, which is looking for an</description>
<pubDate>30 Oct  2008 14:43:25 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33338</link>
</item><item>
<title>33561 - false positive on Mac OS X</title>
<description>Plugin 33561 does a straight version check of the Retrospect Client and reports &amp;lt; 7.5.116. Unfortunately, the most recent version for Mac OS X is 6.</description>
<pubDate>03 Oct  2008 09:56:05 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33218</link>
</item><item>
<title>How/where do i submit custom nasl&amp;#039;s</title>
<description>Hi everyone, i have written some customer nasl&amp;#039;s. i would share them with nessus community, can anyone tell me, how/where do i submit them please.</description>
<pubDate>24 Sep  2008 15:36:00 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33148</link>
</item><item>
<title>get_backport_banner() false negative</title>
<description>In several cases I have seen a &amp;quot;vanilla&amp;quot; Apache HTTPD instance getting mis-classified by get_backport_banner() from backport.inc. This leads to the in</description>
<pubDate>22 Sep  2008 20:23:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33139</link>
</item><item>
<title>Cisco &amp;quot;webvpn&amp;quot; being misclassified as printer</title>
<description>Hi there I&amp;#039;ve noticed that our Cisco ASA and VPN3000 concentrators are being classified as HP printers (rule 11936) by Nessus-3.2.1-es4. They are b</description>
<pubDate>17 Sep  2008 16:15:30 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33115</link>
</item><item>
<title>A few questions about using nessus</title>
<description>I&amp;#039;ve been using nessus (free) for a few years now. Recently, we purchased the commercial version which has a lot of the .audit files included. I&amp;#039;m</description>
<pubDate>16 Sep  2008 13:50:55 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33106</link>
</item><item>
<title>Fw: Plugin 20811 Windows Software Enum via SMB doesn&amp;#039;t support x64</title>
<description>Is there plans to support enumeration of registry fro 64 bit machines using plugin 20811?  I think it needs to inspect HKLM\SOFTWARE\Wow6432Node \M</description>
<pubDate>16 Sep  2008 10:17:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33104</link>
</item><item>
<title>Sorting By Authentication</title>
<description>In my organization we are audited several times a year and I would like to have a *non standard* view into my Nessus vulnerabilities. As opposed to ra</description>
<pubDate>11 Sep  2008 19:19:57 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33094</link>
</item><item>
<title>SMB LogonTime Question</title>
<description>Good day, Please advise on how to convert the value of the KB Item &amp;quot;SMB/LocalUsers/1/Info/LogonTime=0x01-0xc1-0x3b-0xa4-0x4c-0x0d-0x17-0x6a&amp;quot; to a dat</description>
<pubDate>05 Sep  2008 03:27:22 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33070</link>
</item><item>
<title>Unpredictable behavior of uninitialized named arguments</title>
<description>Named function arguments exhibit a questionable behavior in that when not specified in the call they behave as if they were undeclared variables, i.e.</description>
<pubDate>31 Aug  2008 12:15:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33011</link>
</item><item>
<title>PacSec 2008 CFP   (Deadline Sept. 1, Conference Nov. 12/13) and BA-Con 2008 Speakers (Sept. 30/  Oct. 1)</title>
<description>Spanish url: http://ba-con.com.ar/speakers.html?language=es Speaker list and Dojos for BA-Con, September 30, October 1st. (all presentations in both</description>
<pubDate>26 Aug  2008 13:02:20 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32987</link>
</item><item>
<title>Custom Plugin</title>
<description>I was trying to use the &amp;quot;nmap.nasl&amp;quot; plugin under Windows XP (using version 3.2.1.1 of Nessus), but apparently it doesn&amp;#039;t work under Windows, since it</description>
<pubDate>14 Aug  2008 08:41:25 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32930</link>
</item><item>
<title>Plugin to detect Microsoft Siteserver XSS</title>
<description>Attached is a plugin that detects a cross-site scripting flaw in Microsoft Site Server 3.0 (CVE-2002-2073). This is quite an old vulnerability, howe</description>
<pubDate>05 Aug  2008 09:37:09 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32887</link>
</item><item>
<title>Plugin to detect arbitrary redirection.</title>
<description>Attached is a plugin that detects a specific case of arbitrary redirection. It should fire on web servers whom return the path requested in the &amp;#039;Loc</description>
<pubDate>05 Aug  2008 09:29:30 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32886</link>
</item><item>
<title>Test for dwsync.xml files.</title>
<description>Attached is a plugin to detect dwsync.xml files. These are sometimes generated by Dreamweaver and may disclose the presence of files or directories</description>
<pubDate>05 Aug  2008 09:14:12 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32888</link>
</item><item>
<title>Test for .svn/entries</title>
<description>Here&amp;#039;s a plugin to locate websites managed by svn that leak their entries file analogous to the one for CVS/Entries files. It does a little processing</description>
<pubDate>05 Aug  2008 04:07:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32882</link>
</item><item>
<title>How to debug the plugin</title>
<description>Generally how do you guys debug a plugin? The &amp;#039;nasl&amp;#039; command seems not always helpful if a plugin depends on others such as find_service. P.S. What i</description>
<pubDate>02 Aug  2008 09:26:52 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32871</link>
</item><item>
<title>this_host() returns 127.0.0.1?</title>
<description>I just installed Nessus 2.2.6 on an up-to-date Gentoo Linux box and for some reason couldn&amp;#039;t get my plugin to work correctly. I finally stripped my p</description>
<pubDate>03 Jul  2008 14:41:00 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32703</link>
</item><item>
<title>BA-Con 2008 CFP - Buenos Aires, Sept. 30 / Oct. 1 (closes July 11 2008)</title>
<description>BA-Con 2008 CALL FOR PAPERS   BUENOS AIRES, Argentina -- The first annual BA-Con applied   technical security conference - where the eminent figu</description>
<pubDate>27 Jun  2008 09:16:37 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32692</link>
</item><item>
<title>nasl_no_signature_check &amp;gt; windows</title>
<description>I need to set nasl_no_signature_check to yes. I have done so in linux with out a problem, but can&amp;#039;t figure it out in windows. Where can I set this</description>
<pubDate>18 Jun  2008 11:18:21 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32644</link>
</item><item>
<title>dotproject file includes.nasl</title>
<description>dotproject_file_includes.nasl We have seen probes to a web server trying to exploit the remote file include vulnerability in db_adodb.php. The URLs t</description>
<pubDate>18 Jun  2008 01:02:53 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32635</link>
</item><item>
<title>More Nessus plugins for F5 BIG-IP</title>
<description>Just a few more plugins for F5 BIG-IP Notes: - Covers the following vulnerabilities:  - F5 BIG-IP Web Management Console CSRF (BID 27720)  - F5 BIG</description>
<pubDate>12 Jun  2008 07:52:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32605</link>
</item><item>
<title>Broken detection of MySQL in find_service2.nasl</title>
<description>Sometime between revisions 1.242 and 1.251 of find_service2.nasl the detection logic for MySQL has changed so that it no longer works properly. The re</description>
<pubDate>05 Jun  2008 07:10:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32557</link>
</item><item>
<title>Weak ssh keys</title>
<description>Hi All, Is anyone working on a test for the weak debian/ubuntu ssh keys yet? It would be a simple modification to ssh_proto_version.nasl to store the</description>
<pubDate>14 May  2008 04:00:22 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32334</link>
</item><item>
<title>Apache 1.3.37 and Apache 2.0.59 mod_rewrite off-by-one error</title>
<description>The Apache mod_rewrite scripts (31654 and 31655) for the vulnerability described in CVE-2006-3747[1] report for Apache versions less than 1.3.28 and 2</description>
<pubDate>09 May  2008 00:26:45 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32316</link>
</item><item>
<title>Final EUSecWest 2008 Speakers and Dojos - London May 21/22</title>
<description>The selected papers for EUSecWest 2008 are: *  PhlashDance, discovering permanent denial of service attacks against embedded systems - Rich Smith,</description>
<pubDate>08 May  2008 21:30:51 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32315</link>
</item><item>
<title>Plugin Submission</title>
<description>How do I go about submitting plugins for use with Nessus? _______________________________________________ Plugins-writers mailing list Plugins-writers</description>
<pubDate>07 May  2008 01:09:42 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32301</link>
</item><item>
<title>Plugin 31863 (edirectory_http_connection_header_dos.nasl) false positive</title>
<description>Hi all, We just got an apparent false positive on 31863. Nessus seems to indiscriminently fire, even though the vulnerability seems to only affect W</description>
<pubDate>05 May  2008 13:44:04 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32293</link>
</item><item>
<title>ntpd overflow plugin id 10647</title>
<description>Hi i run the following to verify if my ntp daemon is having the overflow bug reported at http://www.nessus.org/plugins/index.php?view=single&amp;amp;id=10647</description>
<pubDate>23 Apr  2008 02:04:07 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32218</link>
</item><item>
<title>EUSecWest CFP Closes April 14th (conf May 21/22 2008)</title>
<description>(We&amp;#039;ve moved the conference this year to the a club in Leicester Square in the heart of London and SoHo. We&amp;#039;ll be putting speakers up across the squar</description>
<pubDate>10 Apr  2008 14:29:17 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/32164</link>
</item><item>
<title>CanSecWest 2008 PWN2OWN - Mar 26-28</title>
<description>Calendar Notes: =========== PacSec 2008 will be on November 12/13 in Tokyo at Aoyama Diamond Hall. EUSecWest 2008 will be on May 21/22 at a fun new</description>
<pubDate>20 Mar  2008 21:25:51 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31963</link>
</item><item>
<title>March MS Check: Problem?</title>
<description>I noticed today that Nessus released the MS vulnerability checks around 3:00pm CST. It&amp;#039;s is currently 9:20pm CST and I still can not pull down the new</description>
<pubDate>11 Mar  2008 19:25:12 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31900</link>
</item><item>
<title>apache_2_2_8.nasl</title>
<description>apache_2_2_8.nasl The plugin apache_2_2_8.nasl checks the banner for version numbers 2.2.0-7. However, a check of the quoted CVEs shows that these p</description>
<pubDate>07 Mar  2008 05:09:12 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31865</link>
</item><item>
<title>coldfusion_double_encoded_null_info_disclosure.nasl</title>
<description>There is an error in the list of files that coldfusion_double_encoded_null_info_disclosure.nasl tries to get (when being paranoid).  The third item i</description>
<pubDate>03 Mar  2008 11:47:48 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31849</link>
</item><item>
<title>macosx_10_4_11.nasl false positive?</title>
<description>Hi all, macosx_10_4_11.nasl seems to trigger on a host which has been upgraded from Tiger to Leopard (10.5.2). We aren&amp;#039;t using any authentication du</description>
<pubDate>28 Feb  2008 12:37:53 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31840</link>
</item><item>
<title>Plugin 19019 - freebsd_squirrelmail_143a_3.nasl</title>
<description>freebsd_squirrelmail_143a_3.nasl Can someone take another look at this plugin? It appears to be mangled or incomplete. I discovered it while trying</description>
<pubDate>25 Feb  2008 10:18:26 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31816</link>
</item><item>
<title>Why inject_packet() works only with nasl.exe and not with Nessus 3 GUI?</title>
<description>Hi dear plugin writers... I wrote a plugin which performs an ARP spoofing by sending an ARP reply by the inject_packet() function. But I sadly discov</description>
<pubDate>22 Feb  2008 08:19:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31813</link>
</item><item>
<title>CanSecWest 2008 Mar 26-28</title>
<description>CanSecWest 2008 Presentations Snort 3.0 - Marty Roesch, Sourcefire Cross-Site Scripting Vulnerabilities in Flash Authoring Tools - Rich   Cannings,</description>
<pubDate>22 Feb  2008 03:11:20 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31812</link>
</item><item>
<title>How to define custom preferences (default gateway) for a plugin?</title>
<description>Dear friends, I searched the mailing list for quite a week without finding an answer for my question: My plugin needs the IP address (and eventually</description>
<pubDate>19 Feb  2008 02:05:31 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31782</link>
</item><item>
<title>February MS Check: Problem?</title>
<description>Is there currently a problem for direct feed customers obtaining this month (February) MS checks?</description>
<pubDate>12 Feb  2008 16:43:52 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31747</link>
</item><item>
<title>Assistance with plugin writing:</title>
<description>Based on an email exchange last week, I&amp;#039;m attempting to write my first plugin, so patience appreciated. :-) Issue: http://www.securityfocus.com/bid/</description>
<pubDate>12 Feb  2008 08:52:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31746</link>
</item><item>
<title>sendmail_expn.nasl</title>
<description>Three things: (1) sendmail_expn.nasl attempts to include the results of &amp;quot;EXPN root&amp;quot; and &amp;quot;VRFY root&amp;quot; in the warning message.  However, this is done w</description>
<pubDate>11 Feb  2008 10:30:04 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31736</link>
</item><item>
<title>Nessus script id 10759 misses Oracle Enterprise Manager</title>
<description>We have an Oracle Enterprise Manager that triggers plugin 10759. Looking at the nasl and the header info, it makes sense. The nasl looks for 10.x.x.</description>
<pubDate>06 Feb  2008 13:04:09 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31710</link>
</item><item>
<title>Nessus plugins for F5 BIG-IP</title>
<description>Just a few plugins for F5 BIG-IP Notes: - Covers CVE-2008-0265, CVE-2008-0539. - Released under GPL. - Plugin ID numbers should be adjusted. - Layout</description>
<pubDate>02 Feb  2008 08:46:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31697</link>
</item><item>
<title>Plug-in - 25674 false positive?</title>
<description>This plug-in responds with a false positive on server responds with anything other than a &amp;#039;not found&amp;#039; response. The machine is definitely not running</description>
<pubDate>28 Jan  2008 17:50:02 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31657</link>
</item><item>
<title>Plugin ID 24278 - ColdFusion Error Processing Request Cross-Site Scripting Vulnerability</title>
<description>To whom it may concern, Plugin ID 24278 - ColdFusion Error Processing Request Cross-Site Scripting Vulnerability Whilst attempting to help a client</description>
<pubDate>23 Jan  2008 13:18:15 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31643</link>
</item><item>
<title>Retrieving Nessus IP Address From Plugins</title>
<description>This might be a stupid question, but... The get_host_ip() function retrieves the IP address of the host that is being attacked/scanned is there a si</description>
<pubDate>23 Jan  2008 08:06:24 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31640</link>
</item><item>
<title>question on start_denial()/stop_denial()</title>
<description>How do these functions determine whether a target host is dead/alive? I can&amp;#039;t find source for them anywhere, but looking at denial_ping.inc and ping_</description>
<pubDate>22 Jan  2008 08:57:58 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31624</link>
</item><item>
<title>Medusa wrapper</title>
<description>I just wrote NASL wrappers for the Medusa brute forcer. http://www.foofus.net/jmk/medusa/medusa.html If you want to test them and report bugs, here t</description>
<pubDate>20 Jan  2008 10:40:07 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31599</link>
</item><item>
<title>Intent of plugin id 26928 - Weak Supported SSL Ciphers Suites</title>
<description>Hi all, 21643 - ssl_supported_ciphers.nasl - Supported SSL Ciphers Suites 26928 - ssl_weak_supported_ciphers.nasl - Weak Supported SSL Ciphers Suites</description>
<pubDate>17 Jan  2008 13:28:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31595</link>
</item><item>
<title>Update to cisco_http_admin_access.nasl</title>
<description>Recently during a pentest, I discovered a cisco router that was vunlerable to the HTTP configuration administrative access vulnerability (plugin id 10</description>
<pubDate>16 Jan  2008 14:31:48 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31588</link>
</item><item>
<title>cleartrust_xss.nasl</title>
<description>The plugin cleartrust_xss.nasl doesn&amp;#039;t report the actual URL with which it was able to trigger the XSS. The output merely includes an incomplete form</description>
<pubDate>15 Jan  2008 11:03:29 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31582</link>
</item><item>
<title>to customize or not to customize</title>
<description>This has more to do with overall plugin development and not any particular plugin. I apologize if this is not the correct list. We have an in house</description>
<pubDate>11 Jan  2008 07:21:02 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31572</link>
</item><item>
<title>Sophos antivirus check</title>
<description>Hi   I would like to know if a plugin which check Sophos antivirus on a MAC OS exist.   Regards   Eric</description>
<pubDate>10 Jan  2008 02:45:14 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31562</link>
</item><item>
<title>Plugin 20089 (bigip_cookie.nasl) Solution URL error</title>
<description>Hi, all, Plugin 20089 offers a (now) bad URL for the solution:   http://asia.f5.com/solutions/archives/techbriefs/cookie.html         It l</description>
<pubDate>07 Jan  2008 09:42:47 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31533</link>
</item><item>
<title>Error adding custom scripts</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1  Hello all, I read the FAQ and I searched on the internet about this topic, but I didn&amp;#039;t find any solu</description>
<pubDate>26 Dec  2007 05:33:30 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31488</link>
</item><item>
<title>Which includes are allowed in GPL plugins?</title>
<description>Could somebody elaborate on which NASL includes are legally useable in GPL plugins? Some includes, such as http_func.inc, have only the Tenable copyr</description>
<pubDate>11 Dec  2007 16:34:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31370</link>
</item><item>
<title>www_clear_text_passwords.nasl (script id 26194) is dangerous?</title>
<description>Hi all, I noticed that www_clear_text_passwords is marked as dangerous. When I took a look at the code for the plugin, it seems that it doesn&amp;#039;t even</description>
<pubDate>11 Dec  2007 14:25:19 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31368</link>
</item><item>
<title>Nessus plugins for Citrix NetScaler</title>
<description>Just a few plugins for Citrix NetScaler Notes: - Covers CVE-2007-6037, CVE-2007-6192, CVE-2007-6193. - Released under GPL. - Plugin ID numbers should</description>
<pubDate>03 Dec  2007 19:51:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31319</link>
</item><item>
<title>ossim_server_detect.nasl</title>
<description>Basic OSSIM server detection on default port. Regards, --Ferdy--</description>
<pubDate>24 Nov  2007 06:35:17 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31281</link>
</item><item>
<title>Question about NASL documentation</title>
<description>Could somebody point me to a comprehensive documentation for NASL (for Nessus 2.x)? The one I have been using so far, nasl2_reference.pdf, 2005/04/2</description>
<pubDate>21 Nov  2007 16:53:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31276</link>
</item><item>
<title>Update to packeteer_web_detect</title>
<description>A small update to packeteer_web_detect.nasl to make it compatible with Packeteer 8.x.  Cheers, nnposter  --- packeteer_web_detect.nasl  2007-10-26</description>
<pubDate>21 Nov  2007 14:56:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31277</link>
</item><item>
<title>plugin 25249 - os_fingerprint_xprobe.nasl</title>
<description>I have a Linux 2.6.22 system which has all ports filtered but which does respond to ping. I don&amp;#039;t expect it matters, but it&amp;#039;s Ubuntu Version 7.10 an</description>
<pubDate>15 Nov  2007 09:21:38 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31253</link>
</item><item>
<title>ipMonitor Directory Traversal NASL</title>
<description>Hello List,   I have attached a NASL that checks for a directory traversal issue discovered in ipMonitor version 8.0 and 8.5 in July 2007 by SensePo</description>
<pubDate>13 Nov  2007 17:16:32 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31245</link>
</item><item>
<title>CanSecWest 2008 CFP (deadline Nov 30, conf Mar 26-28) and PacSec Dojo&amp;#039;s</title>
<description>I&amp;#039;d like to congratulate Adam Laurie for winning the second Powerbook from the Pwn_to_Own contest as the prize for the best speaker rated by the audie</description>
<pubDate>08 Nov  2007 20:30:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31231</link>
</item><item>
<title>HTTP Authentication</title>
<description>I&amp;#039;m looking to check that default user names/passwords are not being used on an web interface. Can anyone recommend any nasl code I look at or any g</description>
<pubDate>06 Nov  2007 06:17:08 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31221</link>
</item><item>
<title>HTTPS Rules</title>
<description>I&amp;#039;m trying to write a set of rules to check contents of HTML files for keywords. However these HTML files are accessed over HTTPS. How would I go ab</description>
<pubDate>05 Nov  2007 07:56:25 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31218</link>
</item><item>
<title>Plugin 21324 (gene6_380.nasl) false positive</title>
<description>Hi, all, Looks like 21324 is generating a false positive. The plugin alerts on version 3.10.0, which is later than 3.8.0. The version string for th</description>
<pubDate>30 Oct  2007 13:40:37 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31180</link>
</item><item>
<title>Mac OS X identification</title>
<description>I have several Mac OS X boxes running versions between 10.4.4 and 10.4.7. All of these boxes trigger macosx_10_4_10.nasl but not macosx_10_4_9.nasl.</description>
<pubDate>29 Oct  2007 14:32:47 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31167</link>
</item><item>
<title>Question about script dependencies</title>
<description>I am new to writing Nessus plug-ins and have a question about how dependencies work. If I create a policy that only uses the &amp;quot;Windows / Gator/GAIN Sp</description>
<pubDate>05 Oct  2007 08:45:12 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/31035</link>
</item><item>
<title>Plugin 11213 (TRACE/TRACK) improvement</title>
<description>Hi, all, Plugin 11213 checks for HTTP TRACE on the remote webserver. If it is found, and the server is Apache, it suggests using mod_rewrite to bloc</description>
<pubDate>01 Oct  2007 09:34:30 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/30996</link>
</item><item>
<title>Plugin 11810 (Gallery web-based photo album)</title>
<description>Hi, all, Plugin 11810 seems to be very generous in assuming that the remote host is using Gallery. As far as I can tell, it&amp;#039;s just checking for gene</description>
<pubDate>28 Sep  2007 09:51:03 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/30993</link>
</item>
</channel>
</rss>

