Nmap Development mailing list archives

New VA Modules: OpenVAS: 14, MSF: 1, Nessus: 23


From: New VA Module Alert Service <postmaster () insecure org>
Date: Thu, 16 Feb 2012 10:03:59 -0800 (PST)

This report describes any new scripts/modules/exploits added to Nmap,
OpenVAS, Metasploit, and Nessus since yesterday.

== OpenVAS plugins (14) ==

r12780 103421 gb_STHS_51991.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_STHS_51991.nasl?root=openvas&view=markup
STHS v2 Web Portal 'team' parameter Multiple SQL Injection
Vulnerabilities

r12780 103422 gb_ajaxplorer_51960.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_ajaxplorer_51960.nasl?root=openvas&view=markup
AjaXplorer 'doc_file' Parameter Local File Disclosure Vulnerability

r12780 103419 gb_EditWrxLite_51995.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_EditWrxLite_51995.nasl?root=openvas&view=markup
EditWrxLite CMS 'wrx.cgi' Remote Command Execution Vulnerability

r12780 103420 gb_sonexis_51994.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_sonexis_51994.nasl?root=openvas&view=markup
Sonexis ConferenceManager Multiple Information Disclosure and Security
Bypass Vulnerabilities

r12785 802608 gb_rabbit_wiki_title_param_xss_vuln.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_rabbit_wiki_title_param_xss_vuln.nasl?root=openvas&view=markup
RabbitWiki 'title' Parameter Cross Site Scripting Vulnerability

r12785 802609 gb_prowiki_id_param_xss_vuln.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_prowiki_id_param_xss_vuln.nasl?root=openvas&view=markup
ProWiki 'id' Parameter Cross Site Scripting Vulnerability

r12785 802588 gb_joomla_mod_currencyconverter_xss_vuln.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_joomla_mod_currencyconverter_xss_vuln.nasl?root=openvas&view=markup
Joomla! Currency Converter Module 'from' Parameter Cross-Site Scripting
Vulnerability

r12785 802605 gb_typsoft_ftp_server_mult_cmd_dos_vuln.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_typsoft_ftp_server_mult_cmd_dos_vuln.nasl?root=openvas&view=markup
TYPSoft FTP Server Multiple Commands Remote Denial of Service
Vulnerabilities

r12785 802589 gb_simple_groupware_export_xss_vuln.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_simple_groupware_export_xss_vuln.nasl?root=openvas&view=markup
SimpleGroupware 'export' Parameter Cross Site Scripting Vulnerability

r12791 103423 gb_horde_backdoor_51989.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_horde_backdoor_51989.nasl?root=openvas&view=markup
Horde Groupware Source Packages Backdoor Vulnerability

r12810 103427 gb_Mathopd_51872.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_Mathopd_51872.nasl?root=openvas&view=markup
Mathopd Directory Traversal Vulnerability

r12810 103424 gb_11in1_52025.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_11in1_52025.nasl?root=openvas&view=markup
11in1 Cross Site Request Forgery and Local File Include Vulnerabilities

r12810 103425 gb_swdesk_51792.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_swdesk_51792.nasl?root=openvas&view=markup
swDesk Multiple Input Validation Vulnerabilities

r12811 103428 gb_freepbx_52048.nasl
http://wald.intevation.org/plugins/scmsvn/viewcvs.php/trunk/openvas-plugins/scripts/gb_freepbx_52048.nasl?root=openvas&view=markup
FreePBX 'gen_amp_conf.php' Credentials Information Disclosure
Vulnerability

== Metasploit modules (1) ==

r14730 
http://metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/windows/browser/java_mixer_sequencer.rb
Java MixerSequencer Object GM_Song Structure Handling Vulnerability

== Nessus plugins (23) ==

57973 ubuntu_USN-1366-1.nasl
http://nessus.org/plugins/index.php?view=single&id=57973
USN-1366-1 : devscripts vulnerabilities

57972 suse_11_NetworkManager-gnome-120110.nasl
http://nessus.org/plugins/index.php?view=single&id=57972
SuSE Security Update: NetworkManager-gnome (2012-01-10)

57971 suse_11_MozillaFirefox-120214.nasl
http://nessus.org/plugins/index.php?view=single&id=57971
SuSE Security Update: MozillaFirefox (2012-02-14)

57970 suse_11_MozillaFirefox-120213.nasl
http://nessus.org/plugins/index.php?view=single&id=57970
SuSE Security Update: MozillaFirefox (2012-02-13)

57969 redhat-RHSA-2012-0137.nasl
http://nessus.org/plugins/index.php?view=single&id=57969
RHSA-2012-0137: kpathsea

57968 freebsd_pkg_2f5ff968582911e1828800262d5ed8ee.nasl
http://nessus.org/plugins/index.php?view=single&id=57968
FreeBSD : chromium -- multiple vulnerabilities
(2f5ff968-5829-11e1-8288-00262d5ed8ee)

57967 fedora_2012-1690.nasl
http://nessus.org/plugins/index.php?view=single&id=57967
Fedora 16 2012-1690

57966 fedora_2012-1400.nasl
http://nessus.org/plugins/index.php?view=single&id=57966
Fedora 15 2012-1400

57965 fedora_2012-1383.nasl
http://nessus.org/plugins/index.php?view=single&id=57965
Fedora 16 2012-1383

57964 debian_DSA-2410.nasl
http://nessus.org/plugins/index.php?view=single&id=57964
Debian DSA-2410-1 : libpng - integer overflow

57963 debian_DSA-2409.nasl
http://nessus.org/plugins/index.php?view=single&id=57963
Debian DSA-2409-1 : devscripts - several vulnerabilities

57962 centos_RHSA-2012-0136.nasl
http://nessus.org/plugins/index.php?view=single&id=57962
CentOS : RHSA-2012-0136

57961 centos_RHSA-2012-0135.nasl
http://nessus.org/plugins/index.php?view=single&id=57961
CentOS : RHSA-2012-0135

57960 centos_RHSA-2012-0128.nasl
http://nessus.org/plugins/index.php?view=single&id=57960
CentOS : RHSA-2012-0128

57959 oracle_java_cpu_feb_2012.nasl
http://nessus.org/plugins/index.php?view=single&id=57959
Oracle Java SE Multiple Vulnerabilities (Feb 2012 CPU)

57958 ubuntu_USN-1365-1.nasl
http://nessus.org/plugins/index.php?view=single&id=57958
USN-1365-1 : Puppet vulnerability

57957 redhat-RHSA-2012-0136.nasl
http://nessus.org/plugins/index.php?view=single&id=57957
RHSA-2012-0136: libvorbis

57956 redhat-RHSA-2012-0135.nasl
http://nessus.org/plugins/index.php?view=single&id=57956
RHSA-2012-0135: java

57955 mandriva_MDVSA-2012-019.nasl
http://nessus.org/plugins/index.php?view=single&id=57955
MDVSA-2012:019 : apr

57954 fedora_2012-1301.nasl
http://nessus.org/plugins/index.php?view=single&id=57954
Fedora 15 2012-1301

57953 fedora_2012-1267.nasl
http://nessus.org/plugins/index.php?view=single&id=57953
Fedora 15 2012-1267

57952 fedora_2012-1253.nasl
http://nessus.org/plugins/index.php?view=single&id=57952
Fedora 16 2012-1253

57951 centos_RHSA-2012-0127.nasl
http://nessus.org/plugins/index.php?view=single&id=57951
CentOS : RHSA-2012-0127
_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/


Current thread: