Nmap Development mailing list archives
New VA Modules: OpenVAS: 13, MSF: 2, Nessus: 23
From: New VA Module Alert Service <postmaster () insecure org>
Date: Fri, 7 Jun 2013 10:01:01 +0000 (UTC)
This report describes any new scripts/modules/exploits added to Nmap, OpenVAS, Metasploit, and Nessus since yesterday. == OpenVAS plugins (13) == r16583 803710 2013/gb_ds3_authentication_server_mult_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_ds3_authentication_server_mult_vuln.nasl?root=openvas&view=markup DS3 Authentication Server Multiple Vulnerabilities r16583 803711 2013/gb_monkey_httpd_host_header_bof_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_monkey_httpd_host_header_bof_vuln.nasl?root=openvas&view=markup Monkey HTTPD Host Header Buffer Overflow Vulnerability r16583 2013/gb_mysql_server_partition_unspecified_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_mysql_server_partition_unspecified_vuln.nasl?root=openvas&view=markup MySQL Server Component Partition Unspecified Vulnerability r16583 803712 2013/gb_plesk_multiple_rce_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_plesk_multiple_rce_vuln.nasl?root=openvas&view=markup Parallels Plesk PHP Code Execution and Command Execution Vulnerabilities r16583 803807 2013/gb_apple_itunes_mult_vuln_jun13_macosx.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_apple_itunes_mult_vuln_jun13_macosx.nasl?root=openvas&view=markup Apple iTunes Multiple Vulnerabilities - June13 (Mac OS X) r16583 803625 2013/gb_wonderdesk_mult_xss_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_wonderdesk_mult_xss_vuln.nasl?root=openvas&view=markup Wonderdesk SQL Multiple Cross-Site Scripting (XSS) Vulnerabilities r16583 803806 2013/gb_apple_itunes_mult_vuln_jun13_win.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_apple_itunes_mult_vuln_jun13_win.nasl?root=openvas&view=markup Apple iTunes Multiple Vulnerabilities - June13 (Windows) r16583 803709 2013/gb_ibm_rational_clearquest_mult_info_disc_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_ibm_rational_clearquest_mult_info_disc_vuln.nasl?root=openvas&view=markup IBM Rational ClearQuest Multiple Information Disclosure Vulnerabilities r16583 803708 2013/gb_elastix_mult_xss_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_elastix_mult_xss_vuln.nasl?root=openvas&view=markup Elastix Multiple Cross-Site Scripting Vulnerabilities r16583 2013/gb_mysql_server_myisam_unspecified_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_mysql_server_myisam_unspecified_vuln.nasl?root=openvas&view=markup MySQL Server Component MyISAM Unspecified Vulnerability r16583 803802 2013/gb_phd_help_desk_sql_inj_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_phd_help_desk_sql_inj_vuln.nasl?root=openvas&view=markup PHD Help Desk SQL Injection vulnerability r16583 2013/gb_mysql_server_optimizer_unspecified_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_mysql_server_optimizer_unspecified_vuln.nasl?root=openvas&view=markup MySQL Server Optimizer Component Unspecified Vulnerability r16583 2013/gb_mysql_server_components_mult_unspec_vuln.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_mysql_server_components_mult_unspec_vuln.nasl?root=openvas&view=markup MySQL Server Components Multiple Unspecified Vulnerabilities == Metasploit modules (2) == d4a864c2 https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/cmd/unix/reverse_awk.rb Unix Command Shell, Reverse TCP (via AWK) 00debd01 https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/cmd/unix/bind_awk.rb Unix Command Shell, Bind TCP (via AWK) == Nessus plugins (23) == 66836 macosx_cve-2013-0990.nasl http://nessus.org/plugins/index.php?view=single&id=66836 Mac OS X 10.7 / 10.8 Unauthorized File Access (remote check) 66835 splunk_503.nasl http://nessus.org/plugins/index.php?view=single&id=66835 Splunk 5.0.x < 5.0.3 Multiple Vulnerabilities 66834 ubuntu_USN-1870-1.nasl http://nessus.org/plugins/index.php?view=single&id=66834 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libxxf86vm vulnerability (USN-1870-1) 66833 ubuntu_USN-1869-1.nasl http://nessus.org/plugins/index.php?view=single&id=66833 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxxf86dga vulnerabilities (USN-1869-1) 66832 ubuntu_USN-1868-1.nasl http://nessus.org/plugins/index.php?view=single&id=66832 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxvmc vulnerabilities (USN-1868-1) 66831 ubuntu_USN-1867-1.nasl http://nessus.org/plugins/index.php?view=single&id=66831 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxv vulnerabilities (USN-1867-1) 66830 ubuntu_USN-1866-1.nasl http://nessus.org/plugins/index.php?view=single&id=66830 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libxtst vulnerability (USN-1866-1) 66829 ubuntu_USN-1865-1.nasl http://nessus.org/plugins/index.php?view=single&id=66829 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libxt vulnerabilities (USN-1865-1) 66828 ubuntu_USN-1864-1.nasl http://nessus.org/plugins/index.php?view=single&id=66828 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxres vulnerability (USN-1864-1) 66827 ubuntu_USN-1863-1.nasl http://nessus.org/plugins/index.php?view=single&id=66827 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libxrender vulnerability (USN-1863-1) 66826 ubuntu_USN-1862-1.nasl http://nessus.org/plugins/index.php?view=single&id=66826 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxrandr, libxrandr-lts-quantal vulnerability (USN-1862-1) 66825 ubuntu_USN-1861-1.nasl http://nessus.org/plugins/index.php?view=single&id=66825 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxp vulnerability (USN-1861-1) 66824 ubuntu_USN-1860-1.nasl http://nessus.org/plugins/index.php?view=single&id=66824 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxinerama vulnerability (USN-1860-1) 66823 ubuntu_USN-1859-1.nasl http://nessus.org/plugins/index.php?view=single&id=66823 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libxi vulnerabilities (USN-1859-1) 66822 ubuntu_USN-1858-1.nasl http://nessus.org/plugins/index.php?view=single&id=66822 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxfixes vulnerability (USN-1858-1) 66821 ubuntu_USN-1857-1.nasl http://nessus.org/plugins/index.php?view=single&id=66821 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libxext vulnerability (USN-1857-1) 66820 ubuntu_USN-1856-1.nasl http://nessus.org/plugins/index.php?view=single&id=66820 Ubuntu 12.04 LTS / 12.10 / 13.04 : libxcursor vulnerability (USN-1856-1) 66819 ubuntu_USN-1855-1.nasl http://nessus.org/plugins/index.php?view=single&id=66819 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libxcb vulnerability (USN-1855-1) 66818 ubuntu_USN-1854-1.nasl http://nessus.org/plugins/index.php?view=single&id=66818 Ubuntu 10.04 LTS / 12.04 LTS / 12.10 / 13.04 : libx11 vulnerabilities (USN-1854-1) 66817 ubuntu_USN-1853-1.nasl http://nessus.org/plugins/index.php?view=single&id=66817 Ubuntu 12.04 LTS / 12.10 / 13.04 : libfs vulnerability (USN-1853-1) 66816 ubuntu_USN-1852-1.nasl http://nessus.org/plugins/index.php?view=single&id=66816 Ubuntu 12.04 LTS / 12.10 / 13.04 : libdmx vulnerability (USN-1852-1) 66815 freebsd_pkg_a3c2dee5cdb911e2b9ce080027019be0.nasl http://nessus.org/plugins/index.php?view=single&id=66815 FreeBSD : telepathy-gabble -- TLS verification bypass (a3c2dee5-cdb9-11e2-b9ce-080027019be0) 66814 freebsd_pkg_6b97436cce1e11e29cb26805ca0b3d42.nasl http://nessus.org/plugins/index.php?view=single&id=66814 FreeBSD : phpMyAdmin -- XSS due to unescaped HTML output in Create View page (6b97436c-ce1e-11e2-9cb2-6805ca0b3d42) _______________________________________________ Sent through the dev mailing list http://nmap.org/mailman/listinfo/dev Archived at http://seclists.org/nmap-dev/
Current thread:
- New VA Modules: OpenVAS: 13, MSF: 2, Nessus: 23 New VA Module Alert Service (Jun 07)