Nmap Development mailing list archives

New VA Modules: Nessus: 26, OpenVAS: 58


From: New VA Module Alert Service <postmaster () insecure org>
Date: Sat, 1 Nov 2014 10:03:06 +0000 (UTC)

This report describes any new scripts/modules/exploits added to Nmap,
Metasploit, Nessus, and OpenVAS since yesterday.

== Nessus plugins (26) ==

78776 oracle_business_transaction_management_file_write.nasl
http://nessus.org/plugins/index.php?view=single&id=78776
Oracle Business Transaction Management 'FlashTunnelService'
'WriteToFile' Message RCE

78774 oracle_opensso_agent_cpu_oct_2014.nasl
http://nessus.org/plugins/index.php?view=single&id=78774
Oracle OpenSSO Agent Multiple Vulnerabilities (October 2014 CPU)

78772 aix_openssl_advisory11.nasl
http://nessus.org/plugins/index.php?view=single&id=78772
AIX OpenSSL Advisory : openssl_advisory11.asc (POODLE)

78771 vmware_vsphere_replication_vmsa_2014_0010.nasl
http://nessus.org/plugins/index.php?view=single&id=78771
VMware vSphere Replication Bash Environment Variable Command Injection
Vulnerability (Shellshock) (VMSA-2014-0010)

78770 cisco_ucs_director_CSCur02877.nasl
http://nessus.org/plugins/index.php?view=single&id=78770
Cisco UCS Director Code Injection (Shellshock) (CSCur02877)

78769 cisco_ucs_director_default_creds_webui.nasl
http://nessus.org/plugins/index.php?view=single&id=78769
Cisco UCS Director Default Credentials (Web UI)

78768 cisco_ucs_director_default_creds_ssh.nasl
http://nessus.org/plugins/index.php?view=single&id=78768
Cisco UCS Director Default Credentials (SSH)

78765 ubuntu_USN-2395-1.nasl
http://nessus.org/plugins/index.php?view=single&id=78765
Ubuntu 14.04 : linux vulnerabilities (USN-2395-1)

78764 ubuntu_USN-2394-1.nasl
http://nessus.org/plugins/index.php?view=single&id=78764
Ubuntu 12.04 LTS : linux-lts-trusty vulnerabilities (USN-2394-1)

78763 ubuntu_USN-2393-1.nasl
http://nessus.org/plugins/index.php?view=single&id=78763
Ubuntu 10.04 LTS / 12.04 LTS / 14.04 / 14.10 : wget vulnerability
(USN-2393-1)

78762 ubuntu_USN-2392-1.nasl
http://nessus.org/plugins/index.php?view=single&id=78762
Ubuntu 14.10 : systemd-shim vulnerability (USN-2392-1)

78761 ubuntu_USN-2391-1.nasl
http://nessus.org/plugins/index.php?view=single&id=78761
Ubuntu 10.04 LTS / 12.04 LTS / 14.04 / 14.10 : php5 vulnerabilities
(USN-2391-1)

78760 redhat-RHSA-2014-1768.nasl
http://nessus.org/plugins/index.php?view=single&id=78760
RHEL 5 : php53 (RHSA-2014:1768)

78759 redhat-RHSA-2014-1767.nasl
http://nessus.org/plugins/index.php?view=single&id=78759
RHEL 6 / 7 : php (RHSA-2014:1767)

78758 redhat-RHSA-2014-1764.nasl
http://nessus.org/plugins/index.php?view=single&id=78758
RHEL 6 / 7 : wget (RHSA-2014:1764)

78757 oraclelinux_ELSA-2014-3085.nasl
http://nessus.org/plugins/index.php?view=single&id=78757
Oracle Linux 5 / 6 : Unbreakable Enterprise kernel (ELSA-2014-3085)

78756 oraclelinux_ELSA-2014-3084.nasl
http://nessus.org/plugins/index.php?view=single&id=78756
Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2014-3084)

78755 oraclelinux_ELSA-2014-1768.nasl
http://nessus.org/plugins/index.php?view=single&id=78755
Oracle Linux 5 : php53 (ELSA-2014-1768)

78754 oraclelinux_ELSA-2014-1767.nasl
http://nessus.org/plugins/index.php?view=single&id=78754
Oracle Linux 6 / 7 : php (ELSA-2014-1767)

78753 oraclelinux_ELSA-2014-1764.nasl
http://nessus.org/plugins/index.php?view=single&id=78753
Oracle Linux 6 / 7 : wget (ELSA-2014-1764)

78752 fedora_2014-12442.nasl
http://nessus.org/plugins/index.php?view=single&id=78752
Fedora 21 : sddm-0.9.0-2.20141007git6a28c29b.fc21 (2014-12442)

78751 centos_RHSA-2014-1764.nasl
http://nessus.org/plugins/index.php?view=single&id=78751
CentOS 6 / 7 : wget (CESA-2014:1764)

cisco_ucs_director_detect.nbin

cisco_ucs_director_webui_detect.nbin

oracle_business_transaction_management_detect.nbin

oracle_opensso_agent_installed.nbin

== OpenVAS plugins (58) ==

r776 2014/gb_wordpress_spreadsheet_mult_xss_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_wordpress_spreadsheet_mult_xss_vuln.nasl?root=openvas-nvts&view=markup
WordPress Spreadsheet plugin Multiple Vulnerabilities

r776 2014/gb_espocrm_multiple_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_espocrm_multiple_vuln.nasl?root=openvas-nvts&view=markup
EspoCRM '/install/index.php' Multiple Vulnerabilities

r776 2014/gb_exponent_cms_src_param_xss_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_exponent_cms_src_param_xss_vuln.nasl?root=openvas-nvts&view=markup
Exponent CMS 'src' POST Parameter Cross-Site Scripting Vulnerability

r776 2014/gb_mozilla_thunderbird_mult_vuln01_oct14_macosx.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_mozilla_thunderbird_mult_vuln01_oct14_macosx.nasl?root=openvas-nvts&view=markup
Mozilla Thunderbird Multiple Vulnerabilities-01 Oct14 (Mac OS X)

r776 2014/gb_megapolis_portal_manager_xss_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_megapolis_portal_manager_xss_vuln.nasl?root=openvas-nvts&view=markup
Megapolis.Portal Manager Multiple Cross Site Scripting Vulnerabilities

r776 2014/gb_mozilla_thunderbird_mult_vuln01_oct14_win.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_mozilla_thunderbird_mult_vuln01_oct14_win.nasl?root=openvas-nvts&view=markup
Mozilla Thunderbird Multiple Vulnerabilities-01 Oct14 (Windows)

r776 2014/gb_wordpress_multiview_event_cal_sql_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_wordpress_multiview_event_cal_sql_vuln.nasl?root=openvas-nvts&view=markup
WordPress Multi View Event Calendar SQL Injection Vulnerability

r776 2014/gb_microsoft_security_advisory_2977292.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_microsoft_security_advisory_2977292.nasl?root=openvas-nvts&view=markup
Microsoft EAP Implementation TLS Information Disclosure Vulnerability
(2977292)

r776 2014/gb_tor_info_disc_vuln_oct14_lin.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_tor_info_disc_vuln_oct14_lin.nasl?root=openvas-nvts&view=markup
Tor 'Relay Early' Traffic Confirmation Attack Vunerability oct14 (Linux)

r776 2014/gb_openmrs_multiple_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_openmrs_multiple_vuln.nasl?root=openvas-nvts&view=markup
OpenMRS Multiple Security Vulnerabilities

r776 2014/gb_wordpress_alipay_plugin_xss_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_wordpress_alipay_plugin_xss_vuln.nasl?root=openvas-nvts&view=markup
WordPress Alipay plugin Cross Site Scripting Vulnerability

r776 2014/gb_python_integer_overflow_vuln_oct14_macosx.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_python_integer_overflow_vuln_oct14_macosx.nasl?root=openvas-nvts&view=markup
Python Integer Overflow Vulnerability 01 Oct14 (Mac OS X)

r776 2014/gb_tomatocart_sql_n_xss_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_tomatocart_sql_n_xss_vuln.nasl?root=openvas-nvts&view=markup
TomatoCart SQL Injection and Cross Site Scripting Vulnerabilities

r776 2014/gb_python_integer_overflow_vuln_oct14_win.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_python_integer_overflow_vuln_oct14_win.nasl?root=openvas-nvts&view=markup
Python Integer Overflow Vulnerability - 01 Oct14 (Windows)

r776 2014/gb_tor_info_disc_vuln_oct14_win.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_tor_info_disc_vuln_oct14_win.nasl?root=openvas-nvts&view=markup
Tor 'Relay Early' Traffic Confirmation Attack Vunerability oct14
(Windows)

r776 2014/gb_httpcombiner_remote_file_disc_vuln.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_httpcombiner_remote_file_disc_vuln.nasl?root=openvas-nvts&view=markup
HttpCombiner ASP.NET Remote File Disclosure Vulnerability

r777 2014/gb_fedora_2014_13571_file_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13571_file_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for file FEDORA-2014-13571

r777 2014/gb_fedora_2014_13053_drupal7_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13053_drupal7_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for drupal7 FEDORA-2014-13053

r777 2014/gb_fedora_2014_13063_devscripts_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13063_devscripts_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for devscripts FEDORA-2014-13063

r777 2014/gb_fedora_2014_13049_java-1.8.0-openjdk_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13049_java-1.8.0-openjdk_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for java-1.8.0-openjdk FEDORA-2014-13049

r777 2014/gb_fedora_2014_12475_python-oauth2_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12475_python-oauth2_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for python-oauth2 FEDORA-2014-12475

r777 2014/gb_fedora_2014_12308_sddm_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12308_sddm_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for sddm FEDORA-2014-12308

r777 2014/gb_fedora_2014_12584_bugzilla_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12584_bugzilla_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for bugzilla FEDORA-2014-12584

r777 2014/gb_fedora_2014_13558_kernel_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13558_kernel_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for kernel FEDORA-2014-13558

r777 2014/gb_fedora_2014_13031_php_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13031_php_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for php FEDORA-2014-13031

r777 2014/gb_RHSA-2014_1671-01_rsyslog5_and_rsyslog.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_RHSA-2014_1671-01_rsyslog5_and_rsyslog.nasl?root=openvas-nvts&view=markup
RedHat Update for rsyslog5 and rsyslog RHSA-2014:1671-01

r777 2014/gb_fedora_2014_13555_wpa_supplicant_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13555_wpa_supplicant_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for wpa_supplicant FEDORA-2014-13555

r777 2014/gb_fedora_2014_12910_sysklogd_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12910_sysklogd_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for sysklogd FEDORA-2014-12910

r777 703055 2014/deb_3055.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/deb_3055.nasl?root=openvas-nvts&view=markup
Debian Security Advisory DSA 3055-1 (pidgin - security update

r777 2014/gb_fedora_2014_12719_perl-Mojolicious_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12719_perl-Mojolicious_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for perl-Mojolicious FEDORA-2014-12719

r777 703057 2014/deb_3057.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/deb_3057.nasl?root=openvas-nvts&view=markup
Debian Security Advisory DSA 3057-1 (libxml2 - security update

r777 2014/gb_fedora_2014_13521_phpMyAdmin_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13521_phpMyAdmin_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for phpMyAdmin FEDORA-2014-13521

r777 2014/gb_RHSA-2014_1676-01_wireshark.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_RHSA-2014_1676-01_wireshark.nasl?root=openvas-nvts&view=markup
RedHat Update for wireshark RHSA-2014:1676-01

r777 2014/gb_RHSA-2014_1677-01_wireshark.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_RHSA-2014_1677-01_wireshark.nasl?root=openvas-nvts&view=markup
RedHat Update for wireshark RHSA-2014:1677-01

r777 703059 2014/deb_3059.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/deb_3059.nasl?root=openvas-nvts&view=markup
Debian Security Advisory DSA 3059-1 (dokuwiki - security update

r777 2014/gb_fedora_2014_12530_bugzilla_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12530_bugzilla_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for bugzilla FEDORA-2014-12530

r777 2014/gb_ubuntu_USN_2390_1.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_ubuntu_USN_2390_1.nasl?root=openvas-nvts&view=markup
Ubuntu Update for pidgin USN-2390-1

r777 2014/gb_fedora_2014_13030_drupal7_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13030_drupal7_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for drupal7 FEDORA-2014-13030

r777 2014/gb_RHSA-2014_1669-02_qemu-kvm.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_RHSA-2014_1669-02_qemu-kvm.nasl?root=openvas-nvts&view=markup
RedHat Update for qemu-kvm RHSA-2014:1669-02

r777 2014/gb_ubuntu_USN_2388_1.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_ubuntu_USN_2388_1.nasl?root=openvas-nvts&view=markup
Ubuntu Update for openjdk-7 USN-2388-1

r777 2014/gb_fedora_2014_13302_php-ZendFramework2_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13302_php-ZendFramework2_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for php-ZendFramework2 FEDORA-2014-13302

r777 2014/gb_fedora_2014_13444_webkitgtk3_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13444_webkitgtk3_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for webkitgtk3 FEDORA-2014-13444

r777 2014/gb_CESA-2014_1724_kernel_centos7.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_CESA-2014_1724_kernel_centos7.nasl?root=openvas-nvts&view=markup
CentOS Update for kernel CESA-2014:1724 centos7

r777 2014/gb_fedora_2014_13013_php_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13013_php_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for php FEDORA-2014-13013

r777 2014/gb_fedora_2014_12878_sysklogd_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12878_sysklogd_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for sysklogd FEDORA-2014-12878

r777 2014/gb_fedora_2014_11522_python_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_11522_python_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for python FEDORA-2014-11522

r777 2014/gb_fedora_2014_13773_kernel_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13773_kernel_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for kernel FEDORA-2014-13773

r777 2014/gb_fedora_2014_13070_rubygem-httpclient_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13070_rubygem-httpclient_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for rubygem-httpclient FEDORA-2014-13070

r777 2014/gb_fedora_2014_12536_python-oauth2_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12536_python-oauth2_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for python-oauth2 FEDORA-2014-12536

r777 2014/gb_fedora_2014_13780_seamonkey_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13780_seamonkey_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for seamonkey FEDORA-2014-13780

r777 703056 2014/deb_3056.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/deb_3056.nasl?root=openvas-nvts&view=markup
Debian Security Advisory DSA 3056-1 (libtasn1-3 - security update

r777 703058 2014/deb_3058.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/deb_3058.nasl?root=openvas-nvts&view=markup
Debian Security Advisory DSA 3058-1 (torque - security update

r777 2014/gb_fedora_2014_12707_perl-Mojolicious_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_12707_perl-Mojolicious_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for perl-Mojolicious FEDORA-2014-12707

r777 2014/gb_ubuntu_USN_2387_1.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_ubuntu_USN_2387_1.nasl?root=openvas-nvts&view=markup
Ubuntu Update for pollinate USN-2387-1

r777 2014/gb_ubuntu_USN_2389_1.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_ubuntu_USN_2389_1.nasl?root=openvas-nvts&view=markup
Ubuntu Update for libxml2 USN-2389-1

r777 2014/gb_suse_2014_1331_1.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_suse_2014_1331_1.nasl?root=openvas-nvts&view=markup
SuSE Update for update openSUSE-SU-2014:1331-1 (update)

r777 2014/gb_fedora_2014_13040_rubygem-httpclient_fc20.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13040_rubygem-httpclient_fc20.nasl?root=openvas-nvts&view=markup
Fedora Update for rubygem-httpclient FEDORA-2014-13040

r777 2014/gb_fedora_2014_13027_java-1.7.0-openjdk_fc19.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_fedora_2014_13027_java-1.7.0-openjdk_fc19.nasl?root=openvas-nvts&view=markup
Fedora Update for java-1.7.0-openjdk FEDORA-2014-13027
_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: