Nmap Development mailing list archives

New VA Modules: NSE: 3, Nessus: 15, OpenVAS: 4


From: New VA Module Alert Service <postmaster () insecure org>
Date: Fri, 23 Aug 2013 10:00:45 +0000 (UTC)

This report describes any new scripts/modules/exploits added to Nmap,
Metasploit, Nessus, and OpenVAS since yesterday.

== Nmap Scripting Engine scripts (3) ==

r32022 http-errors http://nmap.org/nsedoc/scripts/http-errors.html
https://svn.nmap.org/nmap/scripts/http-errors.nse
Author: George Chatzisofroniou
This script crawls through the website and returns any error pages.

r32023 http-feed http://nmap.org/nsedoc/scripts/http-feed.html
https://svn.nmap.org/nmap/scripts/http-feed.nse
Author: George Chatzisofroniou
This script crawls through the website to find any rss or atom feeds.

r32026 http-csrf http://nmap.org/nsedoc/scripts/http-csrf.html
https://svn.nmap.org/nmap/scripts/http-csrf.nse
Author: George Chatzisofroniou
This script detects Cross Site Request Forgeries (CSRF) vulnerabilities.

== Nessus plugins (15) ==

69449 websphere_8_0_0_7.nasl
http://nessus.org/plugins/index.php?view=single&id=69449
IBM WebSphere Application Server 8.0 < Fix Pack 7 Multiple
Vulnerabilities

69448 phpmyadmin_pmasa_2013_10.nasl
http://nessus.org/plugins/index.php?view=single&id=69448
phpMyAdmin 3.5.x / 4.x < 4.0.5 'Header.class.php' Clickjacking Bypass
(PMASA-2013-10)

69447 ciscoworks_ipm_20100120.nasl
http://nessus.org/plugins/index.php?view=single&id=69447
CiscoWorks Internetwork Performance Monitor CORBA GIOP Overflow

69442 bluecoat_icap_patience_page_xss.nasl
http://nessus.org/plugins/index.php?view=single&id=69442
Blue Coat ICAP Patience Page Cross-Site Scripting Vulnerability

69441 sourcefire_defense_center_dir_traversal.nasl
http://nessus.org/plugins/index.php?view=single&id=69441
Multiple Security Vulnerabilities in Sourcefire Defense Center

69440 sl_20130820_kernel_on_SL5_x.nasl
http://nessus.org/plugins/index.php?view=single&id=69440
Scientific Linux Security Update : kernel on SL5.x i386/x86_64

69439 mandriva_MDVSA-2013-214.nasl
http://nessus.org/plugins/index.php?view=single&id=69439
Mandriva Linux Security Advisory : python (MDVSA-2013:214)

69438 gentoo_GLSA-201308-01.nasl
http://nessus.org/plugins/index.php?view=single&id=69438
GLSA-201308-01 : PuTTY: Multiple Vulnerabilities

69437 freebsd_pkg_ae651a4b0a4211e3ba5200262d5ed8ee.nasl
http://nessus.org/plugins/index.php?view=single&id=69437
FreeBSD : chromium -- multiple vulnerabilities
(ae651a4b-0a42-11e3-ba52-00262d5ed8ee)

69436 fedora_2013-15053.nasl
http://nessus.org/plugins/index.php?view=single&id=69436
Fedora 19 : glibc-2.17-13.fc19 (2013-15053)

69435 debian_DSA-2739.nasl
http://nessus.org/plugins/index.php?view=single&id=69435
Debian DSA-2739-1 : cacti - several vulnerabilities

69434 centos_RHSA-2013-1166.nasl
http://nessus.org/plugins/index.php?view=single&id=69434
CentOS 5 : kernel (CESA-2013:1166)

69433 Slackware_SSA_2013-233-03.nasl
http://nessus.org/plugins/index.php?view=single&id=69433
Slackware 14.0 / current : poppler (SSA:2013-233-03)

69432 Slackware_SSA_2013-233-02.nasl
http://nessus.org/plugins/index.php?view=single&id=69432
Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 / 14.0 / current : xpdf
(SSA:2013-233-02)

69431 Slackware_SSA_2013-233-01.nasl
http://nessus.org/plugins/index.php?view=single&id=69431
Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 / 14.0 / current : hplip
(SSA:2013-233-01)

== OpenVAS plugins (4) ==

r17469 2013/gb_samsung_dvr_auth_bypass_08_13.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_samsung_dvr_auth_bypass_08_13.nasl?root=openvas&view=markup
Samsung DVR Authentication Bypass

r17469 2013/gb_netgear_61918.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_netgear_61918.nasl?root=openvas&view=markup
Multiple NetGear ProSafe Switches Information Disclosure Vulnerability

r17469 2013/gb_sitecom_default_telnet_cred.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_sitecom_default_telnet_cred.nasl?root=openvas&view=markup
Sitecom Devices Hard-coded credentials

r17475 2013/gb_graphite_61894.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_graphite_61894.nasl?root=openvas&view=markup
Graphite Remote Code Execution Vulnerability
_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: