<?xml version="1.0" encoding="iso-8859-1" ?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/images/lists/rssstyle2.xsl"?>
<rss version="2.0">
<channel>
<title>Nessus | plugins</title>
<description>Mailing List Archive by Gossamer Threads</description>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/</link>
<language>en-us</language>
<copyright>(c) Gossamer Threads Inc. All rights reserved.</copyright>
<lastBuildDate>13 Feb  2012 03:35:46 -0800</lastBuildDate>
<ttl>120</ttl>
<image>
<title>Gossamer Threads | Nessus | plugins</title>
<width>75</width>
<height>23</height>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/</link>
<url>http://www.gossamer-threads.com/images/lists/rss_logo.jpg</url>
</image>
<item>
<title>Fixes to nmap.nasl</title>
<description>Hello! Here&amp;#039;s the fixes against nmap.nasl found on this link: http://www.nessus.org/documentation/nmap.nasl Here&amp;#039;s the link to the diff (it&amp;#039;s in att</description>
<pubDate>14 Mar  2009 04:59:38 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33747</link>
</item><item>
<title>False positive in frontpage_chunked_overflow.nasl</title>
<description>Plugin frontpage_chunked_overflow.nasl (version 1.18) reports a false positive if the IIS web server is configured not to return 404.  The following</description>
<pubDate>10 Mar  2009 20:12:28 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33744</link>
</item><item>
<title>Low severity and CVSS score in ssh1_proto_enabled.nasl</title>
<description>Plugin ssh1_proto_enabled.nasl (version 1.18) rates CVE-2001-0361 as Low with CVSS 2.6, which seems rather odd, especially considering that it shoul</description>
<pubDate>10 Mar  2009 20:12:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33743</link>
</item><item>
<title>Extending the generic web application vulnerability checks</title>
<description>Hello all, I am currently investigating the possibilities of Nessus with regards to testing web applications on generic vulnerabilities. My goal is t</description>
<pubDate>09 Mar  2009 07:47:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33741</link>
</item><item>
<title>CanSecWest 2009 Speakers and Dojo courses (Mar 14-20)</title>
<description>Final Speaker Lineup for CanSecWest 2009 (March 18-20): =============================================== The Smart-Phones Nightmare - Sergio &amp;#039;shadown&amp;#039;</description>
<pubDate>15 Feb  2009 18:52:51 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33716</link>
</item><item>
<title>Windows Compliance settings</title>
<description>Don&amp;#039;t know if this is the proper way to ask this but I&amp;#039;m in the process of trying to convince MGMT to utilize nessus Windows compliance .audit file</description>
<pubDate>12 Feb  2009 06:45:39 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33710</link>
</item><item>
<title>openssh 50.nasl and paranoia</title>
<description>I have just run Nessus with the paranoid option against three systems. I believe all three are instances of Firewall-1 (ports 264/tcp and 500/udp open</description>
<pubDate>11 Feb  2009 09:48:52 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33706</link>
</item><item>
<title>setting to disable a plugin by default</title>
<description>is there a setting for plugins to disable them by default? the nikto.nasl has a nice checkbox.. any other way? I have one with reverse logic (errors i</description>
<pubDate>11 Feb  2009 08:22:10 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33705</link>
</item><item>
<title>Tenable patch superseded co relation</title>
<description>Hi guys,   PFA. This contains the consolidated list of scans performed for a single subnet last day. The items marked in RED have patch mismatch as</description>
<pubDate>02 Feb  2009 21:35:36 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33681</link>
</item><item>
<title>nasl question : split and arrays</title>
<description>Hello, I have a string that looks like this mystring=&amp;quot;value1=1 value2=a value3=cd value4=jj&amp;quot;; I would like to be able to put this in individual arr</description>
<pubDate>31 Jan  2009 06:29:32 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33676</link>
</item><item>
<title>writing new plugin</title>
<description>Hi all, I have started writing a new nessus plugin in nasl. 1. When I run the plugin with nasl (at a command line), I get &amp;quot;A non-authenticated scrip</description>
<pubDate>30 Jan  2009 03:01:32 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33670</link>
</item><item>
<title>Nessus plugin for detecting SNMP community string leaks</title>
<description>The attached plugin detects presence of SNMP community strings in SNMP MIBs. In this sense it eclipses the functionality of snmp_vacm.nasl while pro</description>
<pubDate>25 Jan  2009 11:06:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33652</link>
</item><item>
<title>From mailing lists to web forums</title>
<description>Hello everyone, For 10 years now, the Nessus user base has been supported with the use  of mailing lists as a medium to communicate with the communi</description>
<pubDate>12 Jan  2009 09:08:00 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33637</link>
</item><item>
<title>Stop scan when can&amp;#039;t login</title>
<description>I&amp;#039;ve written a few plugins that check if they can successfully login via SSH - checks return value of ssh_open_connection(), empty username/password</description>
<pubDate>05 Jan  2009 15:41:49 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33608</link>
</item><item>
<title>up-to-date nasl reference manual?</title>
<description>Dear All, Is there an up-to-date reference manual for nasl ? I tried to improve the plugin 21725 (Symantec Anti-Virus check) so it will check that t</description>
<pubDate>05 Jan  2009 15:25:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33607</link>
</item><item>
<title>Broken cipher list retrieval in plugins 26928, 31705</title>
<description>Plugins ssl_anon_ciphers.nasl and ssl_weak_supported_ciphers.nasl obtain the list of supported SSL ciphers via get_kb_list(). Both of these plugins</description>
<pubDate>31 Dec  2008 08:35:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33586</link>
</item><item>
<title>su/sudo issues with SSH</title>
<description>Hi, First post, but I&amp;#039;ve been using Nessus, nasl&amp;#039;s and .audit files for a couple of years now. I&amp;#039;ve recently been writing a few plugins that requir</description>
<pubDate>28 Dec  2008 12:36:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33572</link>
</item><item>
<title>plugin 11112</title>
<description>This generic ftp traversal test uses anonymous:nessus@&amp;lt;hostname&amp;gt;. I found an ftp server this morning with a traversal vulnerability, but it doesn&amp;#039;t</description>
<pubDate>24 Dec  2008 10:18:57 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33569</link>
</item><item>
<title>Re: Some questions about running compliance checks on	linux servers</title>
<description>Hello Frank, Comments inline:  Frank_Kenisky@psc.uscourts.gov wrote: &amp;gt; &amp;gt; I&amp;#039;ve used Nessus &amp;quot;free&amp;quot; tool for almost 8 years now. I just recently &amp;gt; p</description>
<pubDate>16 Dec  2008 07:16:36 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33544</link>
</item><item>
<title>Some questions about running compliance checks on linux servers</title>
<description>I&amp;#039;ve used Nessus &amp;quot;free&amp;quot; tool for almost 8 years now. I just recently purchased the commercial version so I can utilize the .audit files. After runn</description>
<pubDate>15 Dec  2008 08:15:14 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33541</link>
</item><item>
<title>Bug in os_fingerprint_http.nasl</title>
<description>There is a minor bug in script os_fingerprint_http.nasl. The following patch against version 1.26 resolves the issue: --- os_fingerprint_http.nasl.or</description>
<pubDate>04 Dec  2008 08:45:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33497</link>
</item><item>
<title>Bug in hastymail_attachment_exec.nasl</title>
<description>There is a typo bug in script hastymail_attachment_exec.nasl. The following patch against version 1.5 resolves the issue: --- hastymail_attachment_ex</description>
<pubDate>04 Dec  2008 08:29:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33496</link>
</item><item>
<title>Broken 404 parsing in cross_site_scripting.nasl</title>
<description>Recently script cross_site_scripting.nasl got modified to request URLs via http_send_recv3(). The script attempts to retrieve mostly non-existent UR</description>
<pubDate>04 Dec  2008 08:17:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33495</link>
</item><item>
<title>phpMyAdmin_remote_cmd.nasl (script id 15748)</title>
<description>According to the CVE-2004-2630[1] and the advisory from the phpMyAdmin team[2] only phpMyAdmin versions 2.5.0 to 2.6.0-pl1 have the command executio</description>
<pubDate>04 Dec  2008 06:51:17 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33494</link>
</item><item>
<title>CanSecWest 2009 CFP (March 18-20 2009, Deadline December 8 2008)</title>
<description>Call For Papers     The CanSecWest 2009 CFP is now open.     Deadline is December 8th, 2008. CanSecWest CALL FOR PAPERS     VANCOUVER, Canada -- T</description>
<pubDate>24 Nov  2008 21:21:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/nessus/plugins/33442</link>
</item>
</channel>
</rss>

