Nmap Development mailing list archives

New VA Modules: MSF: 1, Nessus: 80, OpenVAS: 5


From: New VA Module Alert Service <postmaster () insecure org>
Date: Tue, 23 Dec 2014 10:00:31 +0000 (UTC)

This report describes any new scripts/modules/exploits added to Nmap,
Metasploit, Nessus, and OpenVAS since yesterday.

== Metasploit modules (1) ==

e4064279 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/windows/fileformat/ms14_060_sandworm.rb
MS14-060 Microsoft Windows OLE Package Manager Code Execution

== Nessus plugins (80) ==

80203 lexmark_markvision_enterprise_2_1.nasl
http://nessus.org/plugins/index.php?view=single&id=80203
Lexmark Markvision Enterprise ReportDownloadServlet Information
Disclosure

80202 github_win_rce.nasl
http://nessus.org/plugins/index.php?view=single&id=80202
GitHub for Windows .git/config Command Execution

80198 juniper_space_unsupported.nasl
http://nessus.org/plugins/index.php?view=single&id=80198
Juniper Junos Space Unsupported Release

80197 juniper_space_jsa10659.nasl
http://nessus.org/plugins/index.php?view=single&id=80197
Juniper Junos Space < 14.1R1 Multiple Vulnerabilities (JSA10659)

80196 juniper_space_jsa10648.nasl
http://nessus.org/plugins/index.php?view=single&id=80196
Juniper Junos Space GNU Bash Command Injection Vulnerability (JSA10648)

80195 juniper_space_jsa10627.nasl
http://nessus.org/plugins/index.php?view=single&id=80195
Juniper Junos Space < 13.3R1.8 Multiple Vulnerabilities (JSA10627)

80194 juniper_space_jsa10626.nasl
http://nessus.org/plugins/index.php?view=single&id=80194
Juniper Junos Space < 13.3R1.8 Arbitrary Command Execution (JSA10626)

80193 juniper_space_jsa10601.nasl
http://nessus.org/plugins/index.php?view=single&id=80193
Juniper Junos Space < 13.1R1 MySQL Multiple Vulnerabilities (JSA10601)

80192 juniper_space_jsa10585.nasl
http://nessus.org/plugins/index.php?view=single&id=80192
Juniper Junos Space 11.1x < 13.1R1.6 Multiple Vulnerabilities (JSA10585)

80191 juniper_space_jsa10567.nasl
http://nessus.org/plugins/index.php?view=single&id=80191
Juniper Junos Space < 12.3P2.8 Password Disclosure (JSA10567)

80190 account_admin_abc123.nasl
http://nessus.org/plugins/index.php?view=single&id=80190
Default Password (abc123) for 'admin' Account

80189 macosx_shockwave_player_apsb14-10.nasl
http://nessus.org/plugins/index.php?view=single&id=80189
Adobe Shockwave Player <= 12.0.9.149 Unspecified Memory Corruption
Vulnerabilities (APSB14-10) (Mac OS X)

80188 macosx_shockwave_player_apsb14-06.nasl
http://nessus.org/plugins/index.php?view=single&id=80188
Adobe Shockwave Player <= 12.0.7.148 Multiple Memory Corruption
Vulnerabilities (APSB14-06) (Mac OS X)

80187 macosx_shockwave_player_apsb13-29.nasl
http://nessus.org/plugins/index.php?view=single&id=80187
Adobe Shockwave Player <= 12.0.6.147 Memory Corruptions (APSB13-29) (Mac
OS X)

80186 macosx_shockwave_player_apsb13-23.nasl
http://nessus.org/plugins/index.php?view=single&id=80186
Adobe Shockwave Player <= 12.0.3.133 Memory Corruption Vulnerabilities
(APSB13-23) (Mac OS X)

80185 macosx_shockwave_player_apsb13-18.nasl
http://nessus.org/plugins/index.php?view=single&id=80185
Adobe Shockwave Player <= 12.0.2.122 Memory Corruption (APSB13-18) (Mac
OS X)

80184 macosx_shockwave_player_apsb13-12.nasl
http://nessus.org/plugins/index.php?view=single&id=80184
Adobe Shockwave Player <= 12.0.0.112 Multiple Vulnerabilities
(APSB13-12) (Mac OS X)

80183 macosx_shockwave_player_apsb13-06.nasl
http://nessus.org/plugins/index.php?view=single&id=80183
Adobe Shockwave Player <= 11.6.8.638 Multiple Vulnerabilities
(APSB13-06) (Mac OS X)

80182 macosx_shockwave_player_apsb12-23.nasl
http://nessus.org/plugins/index.php?view=single&id=80182
Adobe Shockwave Player <= 11.6.7.637 Multiple Vulnerabilities
(APSB12-23) (Mac OS X)

80181 macosx_shockwave_player_apsb12-17.nasl
http://nessus.org/plugins/index.php?view=single&id=80181
Adobe Shockwave Player <= 11.6.5.635 Multiple Memory Corruption
Vulnerabilities (APSB12-17) (Mac OS X)

80180 macosx_shockwave_player_apsb12-13.nasl
http://nessus.org/plugins/index.php?view=single&id=80180
Adobe Shockwave Player <= 11.6.4.634 Multiple Memory Corruption
Vulnerabilities (APSB12-13) (Mac OS X)

80179 macosx_shockwave_player_apsb12-02.nasl
http://nessus.org/plugins/index.php?view=single&id=80179
Adobe Shockwave Player <= 11.6.3.633 Multiple Code Execution
Vulnerabilities (APSB12-02) (Mac OS X)

80178 macosx_shockwave_player_apsb11-27.nasl
http://nessus.org/plugins/index.php?view=single&id=80178
Adobe Shockwave Player <= 11.6.1.629 Multiple Memory Corruption
Vulnerabilities (APSB11-27) (Mac OS X)

80177 macosx_shockwave_player_apsb11-19.nasl
http://nessus.org/plugins/index.php?view=single&id=80177
Adobe Shockwave Player <= 11.6.0.626 Multiple Memory Corruption
Vulnerabilities (APSB11-19) (Mac OS X)

80176 macosx_shockwave_player_apsb11-17.nasl
http://nessus.org/plugins/index.php?view=single&id=80176
Adobe Shockwave Player <= 11.5.9.620 (APSB11-17) (Mac OS X)

80175 macosx_shockwave_player_apsb11-01.nasl
http://nessus.org/plugins/index.php?view=single&id=80175
Adobe Shockwave Player <= 11.5.9.615 (APSB11-01) (Mac OS X)

80174 macosx_shockwave_player_apsb10-25.nasl
http://nessus.org/plugins/index.php?view=single&id=80174
Adobe Shockwave Player <= 11.5.8.612 (APSB10-25) (Mac OS X)

80173 macosx_shockwave_player_apsb10-20.nasl
http://nessus.org/plugins/index.php?view=single&id=80173
Adobe Shockwave Player <= 11.5.7.609 (APSB10-20) (Mac OS X)

80172 macosx_shockwave_player_apsb10-12.nasl
http://nessus.org/plugins/index.php?view=single&id=80172
Adobe Shockwave Player <= 11.5.6.606 Multiple Vulnerabilities
(APSB10-12) (Mac OS X)

80171 macosx_shockwave_player_apsb10-03.nasl
http://nessus.org/plugins/index.php?view=single&id=80171
Adobe Shockwave Player <= 11.5.2.602 Multiple Vulnerabilities
(APSB10-03) (Mac OS X)

80170 macosx_shockwave_player_apsb09_16.nasl
http://nessus.org/plugins/index.php?view=single&id=80170
Adobe Shockwave Player <= 11.5.1.601 Multiple Vulnerabilities
(APSB09-16) (Mac OS X)

80168 ubuntu_USN-2448-2.nasl
http://nessus.org/plugins/index.php?view=single&id=80168
Ubuntu 14.10 : linux regression (USN-2448-2)

80167 ubuntu_USN-2447-2.nasl
http://nessus.org/plugins/index.php?view=single&id=80167
Ubuntu 14.04 : linux-lts-utopic regression (USN-2447-2)

80166 suse_11_libksba-141211.nasl
http://nessus.org/plugins/index.php?view=single&id=80166
SuSE 11.3 Security Update : libksba (SAT Patch Number 10087)

80165 suse_11_cpio-141204.nasl
http://nessus.org/plugins/index.php?view=single&id=80165
SuSE 11.3 Security Update : cpio (SAT Patch Number 10070)

80164 sl_20141220_ntp_on_SL6_x.nasl
http://nessus.org/plugins/index.php?view=single&id=80164
Scientific Linux Security Update : ntp on SL6.x, SL7.x i386/x86_64

80163 sl_20141220_ntp_on_SL5_x.nasl
http://nessus.org/plugins/index.php?view=single&id=80163
Scientific Linux Security Update : ntp on SL5.x i386/x86_64

80162 sl_20141218_glibc_on_SL7_x.nasl
http://nessus.org/plugins/index.php?view=single&id=80162
Scientific Linux Security Update : glibc on SL7.x x86_64

80161 redhat-RHSA-2014-2025.nasl
http://nessus.org/plugins/index.php?view=single&id=80161
RHEL 5 : ntp (RHSA-2014:2025)

80160 redhat-RHSA-2014-2024.nasl
http://nessus.org/plugins/index.php?view=single&id=80160
RHEL 6 / 7 : ntp (RHSA-2014:2024)

80159 redhat-RHSA-2014-2019.nasl
http://nessus.org/plugins/index.php?view=single&id=80159
RHEL 5 / 6 : JBoss EAP (RHSA-2014:2019)

80158 oraclelinux_ELSA-2014-3108.nasl
http://nessus.org/plugins/index.php?view=single&id=80158
Oracle Linux 5 / 6 : Unbreakable Enterprise kernel (ELSA-2014-3108)

80157 oraclelinux_ELSA-2014-3107.nasl
http://nessus.org/plugins/index.php?view=single&id=80157
Oracle Linux 5 / 6 : Unbreakable Enterprise kernel (ELSA-2014-3107)

80156 oraclelinux_ELSA-2014-3106.nasl
http://nessus.org/plugins/index.php?view=single&id=80156
Oracle Linux 6 / 7 : Unbreakable Enterprise kernel (ELSA-2014-3106)

80155 oraclelinux_ELSA-2014-2025.nasl
http://nessus.org/plugins/index.php?view=single&id=80155
Oracle Linux 5 : ntp (ELSA-2014-2025)

80154 oraclelinux_ELSA-2014-2024.nasl
http://nessus.org/plugins/index.php?view=single&id=80154
Oracle Linux 6 / 7 : ntp (ELSA-2014-2024)

80153 openSUSE-2014-794.nasl
http://nessus.org/plugins/index.php?view=single&id=80153
openSUSE Security Update : Linux Kernel (openSUSE-SU-2014:1678-1)

80152 openSUSE-2014-793.nasl
http://nessus.org/plugins/index.php?view=single&id=80152
openSUSE Security Update : the Linux Kernel (openSUSE-SU-2014:1677-1)

80151 openSUSE-2014-792.nasl
http://nessus.org/plugins/index.php?view=single&id=80151
openSUSE Security Update : ntp (openSUSE-SU-2014:1670-1)

80150 openSUSE-2014-791.nasl
http://nessus.org/plugins/index.php?view=single&id=80150
openSUSE Security Update : the Linux Kernel (openSUSE-SU-2014:1669-1)

80149 freebsd_pkg_4033d82687dd11e490793c970e169bc2.nasl
http://nessus.org/plugins/index.php?view=single&id=80149
FreeBSD : ntp -- multiple vulnerabilities
(4033d826-87dd-11e4-9079-3c970e169bc2)

80148 freebsd_pkg_1d56727887a511e4879c000c292ee6b8.nasl
http://nessus.org/plugins/index.php?view=single&id=80148
FreeBSD : git -- Arbitrary command execution on case-insensitive
filesystems (1d567278-87a5-11e4-879c-000c292ee6b8)

80147 fedora_2014-17361.nasl
http://nessus.org/plugins/index.php?view=single&id=80147
Fedora 20 : ntp-4.2.6p5-19.fc20 (2014-17361)

80146 fedora_2014-17293.nasl
http://nessus.org/plugins/index.php?view=single&id=80146
Fedora 21 : kernel-3.17.7-300.fc21 (2014-17293)

80145 fedora_2014-17283.nasl
http://nessus.org/plugins/index.php?view=single&id=80145
Fedora 20 : kernel-3.17.7-200.fc20 (2014-17283)

80144 fedora_2014-16756.nasl
http://nessus.org/plugins/index.php?view=single&id=80144
Fedora 21 : sagemath-6.3-5.fc21 (2014-16756)

80143 fedora_2014-16742.nasl
http://nessus.org/plugins/index.php?view=single&id=80143
Fedora 20 : ctdb-2.5.4-2.fc20 (2014-16742)

80142 fedora_2014-16671.nasl
http://nessus.org/plugins/index.php?view=single&id=80142
Fedora 20 : unbound-1.5.1-2.fc20 (2014-16671)

80141 fedora_2014-16667.nasl
http://nessus.org/plugins/index.php?view=single&id=80141
Fedora 20 : sagemath-6.1.1-6.fc20 (2014-16667)

80140 fedora_2014-16647.nasl
http://nessus.org/plugins/index.php?view=single&id=80140
Fedora 21 : unbound-1.5.1-2.fc21 (2014-16647)

80139 fedora_2014-16609.nasl
http://nessus.org/plugins/index.php?view=single&id=80139
Fedora 21 : mantis-1.2.18-1.fc21 (2014-16609)

80138 fedora_2014-16561.nasl
http://nessus.org/plugins/index.php?view=single&id=80138
Fedora 21 : firebird-2.5.2.26539.0-14.fc21 (2014-16561)

80137 fedora_2014-16546.nasl
http://nessus.org/plugins/index.php?view=single&id=80137
Fedora 20 : mantis-1.2.18-1.fc20 (2014-16546)

80136 fedora_2014-16524.nasl
http://nessus.org/plugins/index.php?view=single&id=80136
Fedora 20 : firebird-2.5.2.26539.0-10.fc20 (2014-16524)

80135 fedora_2014-16504.nasl
http://nessus.org/plugins/index.php?view=single&id=80135
Fedora 19 : mantis-1.2.18-1.fc19 (2014-16504)

80134 fedora_2014-16477.nasl
http://nessus.org/plugins/index.php?view=single&id=80134
Fedora 19 : python-tornado-2.2.1-7.fc19 (2014-16477)

80133 fedora_2014-16451.nasl
http://nessus.org/plugins/index.php?view=single&id=80133
Fedora 21 : gpgme-1.4.3-5.fc21 (2014-16451)

80132 fedora_2014-16287.nasl
http://nessus.org/plugins/index.php?view=single&id=80132
Fedora 21 : pyxdg-0.25-5.fc21 (2014-16287)

80131 fedora_2014-16272.nasl
http://nessus.org/plugins/index.php?view=single&id=80131
Fedora 19 : flac-1.3.1-1.fc19 (2014-16272)

80130 fedora_2014-16227.nasl
http://nessus.org/plugins/index.php?view=single&id=80130
Fedora 19 : dbus-1.6.28-1.fc19 (2014-16227)

80129 fedora_2014-16224.nasl
http://nessus.org/plugins/index.php?view=single&id=80129
Fedora 19 : pcre-8.32-12.fc19 (2014-16224)

80128 fedora_2014-16215.nasl
http://nessus.org/plugins/index.php?view=single&id=80128
Fedora 20 : pcre-8.33-8.fc20 (2014-16215)

80127 debian_DSA-3109.nasl
http://nessus.org/plugins/index.php?view=single&id=80127
Debian DSA-3109-1 : firebird2.5 - security update

80126 debian_DSA-3106.nasl
http://nessus.org/plugins/index.php?view=single&id=80126
Debian DSA-3106-1 : jasper - security update

80125 centos_RHSA-2014-2025.nasl
http://nessus.org/plugins/index.php?view=single&id=80125
CentOS 5 : ntp (CESA-2014:2025)

80124 centos_RHSA-2014-2024.nasl
http://nessus.org/plugins/index.php?view=single&id=80124
CentOS 6 / 7 : ntp (CESA-2014:2024)

80123 centos_RHSA-2014-2023.nasl
http://nessus.org/plugins/index.php?view=single&id=80123
CentOS 7 : glibc (CESA-2014:2023)

80122 ala_ALAS-2014-462.nasl
http://nessus.org/plugins/index.php?view=single&id=80122
Amazon Linux AMI : ntp (ALAS-2014-462)

github_win_installed.nbin

shockwave_player_detect_macosx.nbin

== OpenVAS plugins (5) ==

r885 gb_safenet_sas_owa_agent_detect.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/gb_safenet_sas_owa_agent_detect.nasl?root=openvas-nvts&view=markup
SafeNet SAS OWA Agent Detection

r885 2014/gb_safenet_sas_owa_agent_dir_traversal_12_14.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_safenet_sas_owa_agent_dir_traversal_12_14.nasl?root=openvas-nvts&view=markup
SafeNet SAS OWA Agent Directory Traversal Vulnerability

r885 gb_owa_detect.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/gb_owa_detect.nasl?root=openvas-nvts&view=markup
Outlook Web App Detection

r886 2014/gb_allegro_rompager_cve_2014_9222.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/2014/gb_allegro_rompager_cve_2014_9222.nasl?root=openvas-nvts&view=markup
Allegro RomPager `Misfortune Cookie` Vulnerability

r886 gb_allegro_rompager_detect.nasl
https://wald.intevation.org/scm/viewvco.php/scripts/gb_allegro_rompager_detect.nasl?root=openvas-nvts&view=markup
Allegro RomPager Detection
_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: