Nmap Development mailing list archives

New VA Modules: MSF: 3, Nessus: 43, OpenVAS: 4


From: New VA Module Alert Service <postmaster () insecure org>
Date: Thu, 19 Jun 2014 10:00:39 +0000 (UTC)

This report describes any new scripts/modules/exploits added to Nmap,
Metasploit, Nessus, and OpenVAS since yesterday.

== Metasploit modules (3) ==

e4d14194 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/multi/http/rocket_servergraph_file_requestor_rce.rb
Rocket Servergraph Admin Center fileRequestor Remote Code Execution

23f7fe45 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/auxiliary/gather/chromecast_wifi.rb
Chromecast Wifi Enumeration

8f8af0e9 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/windows/http/ericom_access_now_bof.rb
Ericom AccessNow Server Buffer Overflow

== Nessus plugins (43) ==

76132 cisco_telepresence_supervisor_8050_mse_CSCup22635.nasl
http://nessus.org/plugins/index.php?view=single&id=76132
Cisco TelePresence Supervisor MSE 8050 Multiple Vulnerabilities in
OpenSSL

76131 cisco_telepresence_mcu_CSCup23994.nasl
http://nessus.org/plugins/index.php?view=single&id=76131
Cisco TelePresence MCU Series Devices Multiple Vulnerabilities in
OpenSSL

76130 cisco_ons_CSCup24077.nasl
http://nessus.org/plugins/index.php?view=single&id=76130
Cisco ONS 15400 Series Devices Multiple Vulnerabilities in OpenSSL

76129 cisco_jabber_client_CSCup23913.nasl
http://nessus.org/plugins/index.php?view=single&id=76129
Cisco Windows Jabber Client Multiple Vulnerabilities in OpenSSL

76128 cisco_asa_CSCup22532.nasl
http://nessus.org/plugins/index.php?view=single&id=76128
Cisco Adaptive Security Appliances Multiple Vulnerabilities in OpenSSL

76127 cisco-CSCup22544-ace.nasl
http://nessus.org/plugins/index.php?view=single&id=76127
Cisco ACE30 and ACE4710 OpenSSL 'ChangeCipherSpec' MiTM Vulnerability

76126 cisco_ace_unsupported.nasl
http://nessus.org/plugins/index.php?view=single&id=76126
Cisco Unsupported ACE Module Detection

76124 junos_pulse_jsa10629.nasl
http://nessus.org/plugins/index.php?view=single&id=76124
Junos Pulse Secure Access IVE / UAC OS Multiple OpenSSL Vulnerabilities
(JSA10629)

76123 smb_kb2974294.nasl
http://nessus.org/plugins/index.php?view=single&id=76123
MS Security Advisory 2974294: Vulnerability in Microsoft Malware
Protection Engine Could Allow Denial of Service

76122 ossim_web_CVE-2013-6056.nasl
http://nessus.org/plugins/index.php?view=single&id=76122
OSSIM tele_compress.php Directory Traversal

76121 cisco_cucm_CSCuo17337.nasl
http://nessus.org/plugins/index.php?view=single&id=76121
Cisco Unified Communications Manager Java Interface SQL Injection

76120 mcafee_web_gateway_SB10052.nasl
http://nessus.org/plugins/index.php?view=single&id=76120
McAfee Web Gateway < 7.3.2.2 DoS (SB10052)

76119 mcafee_web_gateway_KB73412.nasl
http://nessus.org/plugins/index.php?view=single&id=76119
McAfee Web Gateway < 7.1.0.5 / 7.1.5.2 XSS

76118 mcafee_firewall_enterprise_SB10052.nasl
http://nessus.org/plugins/index.php?view=single&id=76118
McAfee Firewall Enterprise DoS (SB10052)

76117 intel_sa_00038.nasl
http://nessus.org/plugins/index.php?view=single&id=76117
Intel Multiple Products Crafted UEFI Variable Handling Security Bypass

76116 db2_spi_priv_esc_windows.nasl
http://nessus.org/plugins/index.php?view=single&id=76116
DB2 Stored Procedure Infrastructure Privilege Escalation Vulnerability

76115 db2_98fp5_multi_vuln.nasl
http://nessus.org/plugins/index.php?view=single&id=76115
DB2 9.8 <= Fix Pack 5 Multiple Vulnerabilities

76114 db2_97fp9a.nasl
http://nessus.org/plugins/index.php?view=single&id=76114
DB2 9.7 < Fix Pack 9a Multiple Vulnerabilities

76113 db2_95fp9_multi_vuln.nasl
http://nessus.org/plugins/index.php?view=single&id=76113
DB2 9.5 <= Fix Pack 9 or 10 Multiple Vulnerabilities

76112 db2_91_tls_ssl_dos.nasl
http://nessus.org/plugins/index.php?view=single&id=76112
DB2 9.1 TLS/SSL Multiple DoS Vulnerabilities

76111 db2_105fp3a.nasl
http://nessus.org/plugins/index.php?view=single&id=76111
DB2 10.5 < Fix Pack 3a Multiple Vulnerabilities

76110 db2_101fp3a.nasl
http://nessus.org/plugins/index.php?view=single&id=76110
DB2 10.1 < Fix Pack 3a Multiple Vulnerabilities

76109 ubuntu_USN-2247-1.nasl
http://nessus.org/plugins/index.php?view=single&id=76109
Ubuntu 12.04 LTS / 13.10 / 14.04 : nova vulnerabilities (USN-2247-1)

76108 ubuntu_USN-2246-1.nasl
http://nessus.org/plugins/index.php?view=single&id=76108
Ubuntu 10.04 LTS / 12.04 LTS / 13.10 / 14.04 : apt vulnerability
(USN-2246-1)

76107 ubuntu_USN-2214-3.nasl
http://nessus.org/plugins/index.php?view=single&id=76107
Ubuntu 10.04 LTS / 12.04 LTS / 13.10 / 14.04 : libxml2 regression
(USN-2214-3)

76106 suse_11_openssl-certs-140604.nasl
http://nessus.org/plugins/index.php?view=single&id=76106
SuSE 11.3 Security Update : openssl-certs (SAT Patch Number 9341)

76105 suse_11_flash-player-140616.nasl
http://nessus.org/plugins/index.php?view=single&id=76105
SuSE 11.3 Security Update : flash-player (SAT Patch Number 9373)

76104 openSUSE-2014-425.nasl
http://nessus.org/plugins/index.php?view=single&id=76104
openSUSE Security Update : sendmail (openSUSE-SU-2014:0804-1)

76103 freebsd_pkg_f109b02ff5a411e382e900a098b18457.nasl
http://nessus.org/plugins/index.php?view=single&id=76103
FreeBSD : asterisk -- multiple vulnerabilities
(f109b02f-f5a4-11e3-82e9-00a098b18457)

76102 fedora_2014-7400.nasl
http://nessus.org/plugins/index.php?view=single&id=76102
Fedora 20 : lynis-1.5.6-1.fc20 (2014-7400)

76101 fedora_2014-7228.nasl
http://nessus.org/plugins/index.php?view=single&id=76101
Fedora 19 : php-horde-Horde-Ldap-2.0.6-1.fc19 (2014-7228)

76100 fedora_2014-7224.nasl
http://nessus.org/plugins/index.php?view=single&id=76100
Fedora 19 : python-djblets-0.7.30-2.fc19 (2014-7224)

76099 fedora_2014-7223.nasl
http://nessus.org/plugins/index.php?view=single&id=76099
Fedora 20 : python-djblets-0.7.30-2.fc20 (2014-7223)

76098 fedora_2014-7214.nasl
http://nessus.org/plugins/index.php?view=single&id=76098
Fedora 19 : libfep-0.1.0-1.fc19 (2014-7214)

76097 fedora_2014-7126.nasl
http://nessus.org/plugins/index.php?view=single&id=76097
Fedora 20 : libfep-0.1.0-1.fc20 (2014-7126)

76096 fedora_2014-6944.nasl
http://nessus.org/plugins/index.php?view=single&id=76096
Fedora 20 : mod_wsgi-3.5-1.fc20 (2014-6944)

76095 fedora_2014-6938.nasl
http://nessus.org/plugins/index.php?view=single&id=76095
Fedora 19 : mod_wsgi-3.5-1.fc19 (2014-6938)

76094 fedora_2014-6904.nasl
http://nessus.org/plugins/index.php?view=single&id=76094
Fedora 19 : php-phpunit-PHPUnit-MockObject-1.2.3-4.fc19 /
php-5.5.13-3.fc19 / etc (2014-6904)

76093 fedora_2014-6901.nasl
http://nessus.org/plugins/index.php?view=single&id=76093
Fedora 20 : php-phpunit-PHPUnit-MockObject-1.2.3-4.fc20 /
php-5.5.13-3.fc20 / etc (2014-6901)

76092 fedora_2014-6331.nasl
http://nessus.org/plugins/index.php?view=single&id=76092
Fedora 19 : dovecot-2.2.13-1.fc19 (2014-6331)

76091 debian_DSA-2963.nasl
http://nessus.org/plugins/index.php?view=single&id=76091
Debian DSA-2963-1 : lucene-solr - security update

76090 debian_DSA-2962.nasl
http://nessus.org/plugins/index.php?view=single&id=76090
Debian DSA-2962-1 : nspr - security update

cisco_telepresence_supervisor_mse_detect.nbin

== OpenVAS plugins (4) ==

r511 2014/gb_junos_JSA10520.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_junos_JSA10520.nasl?root=openvas-nvts&view=markup

r512 702963 2014/deb_2963.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/deb_2963.nasl?root=openvas-nvts&view=markup
Debian Security Advisory DSA 2963-1 (lucene-solr - security update

r513 gb_adobe_livecycle_designer_detect_win.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/gb_adobe_livecycle_designer_detect_win.nasl?root=openvas-nvts&view=markup
Adobe LiveCycle Designer Version Detection (Windows)

r513 gb_symantec_backup_exec_detect.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/gb_symantec_backup_exec_detect.nasl?root=openvas-nvts&view=markup
Symantec Backup Exec Version Detection
_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: