Nmap Development mailing list archives

New VA Modules: MSF: 5, Nessus: 33, OpenVAS: 6


From: New VA Module Alert Service <postmaster () insecure org>
Date: Wed, 16 Oct 2013 10:00:45 +0000 (UTC)

This report describes any new scripts/modules/exploits added to Nmap,
Metasploit, Nessus, and OpenVAS since yesterday.

== Metasploit modules (5) ==

da485650 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/cmd/unix/bind_nodejs.rb
Unix Command Shell, Bind TCP (via nodejs)

da485650 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/cmd/unix/reverse_nodejs.rb
Unix Command Shell, Reverse TCP (via nodejs)

da485650 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/nodejs/shell_bind_tcp.rb
Command Shell, Bind TCP (via nodejs)

171b70fa 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/linux/http/zabbix_sqli.rb
Zabbix 2.0.8 SQL Injection and Remote Code Execution

008f7876 
https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/auxiliary/scanner/http/dlink_user_agent_backdoor.rb
DLink User-Agent Backdoor Scanner

== Nessus plugins (33) ==

70448 vmware_cim_services_rce.nasl
http://nessus.org/plugins/index.php?view=single&id=70448
VMware ESX/ESXi CIM Services Multiple Vulnerabilities

70447 dlink_router_user_agent_auth_bypass.nasl
http://nessus.org/plugins/index.php?view=single&id=70447
alpha_auth_check() Function Remote Authentication Bypass

70446 proftpd_rce.nasl
http://nessus.org/plugins/index.php?view=single&id=70446
ProFTPD TELNET IAC Escape Sequence Remote Buffer Overflow

70445 solaris10_x86_150837.nasl
http://nessus.org/plugins/index.php?view=single&id=70445
Solaris 10 (x86) : 150837-01

70444 solaris10_x86_150619.nasl
http://nessus.org/plugins/index.php?view=single&id=70444
Solaris 10 (x86) : 150619-02

70443 solaris10_150836.nasl
http://nessus.org/plugins/index.php?view=single&id=70443
Solaris 10 (sparc) : 150836-01

70442 solaris10_150618.nasl
http://nessus.org/plugins/index.php?view=single&id=70442
Solaris 10 (sparc) : 150618-02

70441 Slackware_SSA_2013-287-05.nasl
http://nessus.org/plugins/index.php?view=single&id=70441
Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 / 14.0 / current :
xorg-server (SSA:2013-287-05)

70440 Slackware_SSA_2013-287-04.nasl
http://nessus.org/plugins/index.php?view=single&id=70440
Slackware 13.37 / 14.0 : libgpg-error (SSA:2013-287-04)

70439 Slackware_SSA_2013-287-03.nasl
http://nessus.org/plugins/index.php?view=single&id=70439
Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 : gnutls (SSA:2013-287-03)

70438 Slackware_SSA_2013-287-02.nasl
http://nessus.org/plugins/index.php?view=single&id=70438
Slackware 13.37 / 14.0 / current : gnupg2 (SSA:2013-287-02)

70437 Slackware_SSA_2013-287-01.nasl
http://nessus.org/plugins/index.php?view=single&id=70437
Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 / 14.0 / current : gnupg
(SSA:2013-287-01)

70436 fedora_2013-18867.nasl
http://nessus.org/plugins/index.php?view=single&id=70436
Fedora 20 : kernel-3.11.4-301.fc20 (2013-18867)

70435 fedora_2013-18866.nasl
http://nessus.org/plugins/index.php?view=single&id=70435
Fedora 20 : gnupg2-2.0.22-1.fc20 (2013-18866)

70434 fedora_2013-18820.nasl
http://nessus.org/plugins/index.php?view=single&id=70434
Fedora 19 : kernel-3.11.4-201.fc19 / kernel-3.11.4-201.fc19 (2013-18820)

70433 fedora_2013-18807.nasl
http://nessus.org/plugins/index.php?view=single&id=70433
Fedora 19 : gnupg2-2.0.22-1.fc19 / gnupg2-2.0.22-1.fc19 (2013-18807)

70432 fedora_2013-18715.nasl
http://nessus.org/plugins/index.php?view=single&id=70432
Fedora 20 : qemu-1.6.0-10.fc20 (2013-18715)

70431 fedora_2013-18579.nasl
http://nessus.org/plugins/index.php?view=single&id=70431
Fedora 20 : mod_fcgid-2.3.9-1.fc20 (2013-18579)

70430 fedora_2013-18493.nasl
http://nessus.org/plugins/index.php?view=single&id=70430
Fedora 19 : qemu-1.4.2-12.fc19 / qemu-1.4.2-12.fc19 (2013-18493)

70429 fedora_2013-18404.nasl
http://nessus.org/plugins/index.php?view=single&id=70429
Fedora 19 : elinks-0.12-0.35.pre6.fc19 / elinks-0.12-0.35.pre6.fc19
(2013-18404)

70428 fedora_2013-18378.nasl
http://nessus.org/plugins/index.php?view=single&id=70428
Fedora 19 : xen-4.2.3-3.fc19 / xen-4.2.3-3.fc19 (2013-18378)

70427 fedora_2013-18373.nasl
http://nessus.org/plugins/index.php?view=single&id=70427
Fedora 18 : xen-4.2.3-3.fc18 / xen-4.2.3-3.fc18 (2013-18373)

70426 fedora_2013-18351.nasl
http://nessus.org/plugins/index.php?view=single&id=70426
Fedora 19 : zabbix-2.0.8-3.fc19 / zabbix-2.0.8-3.fc19 (2013-18351)

70425 fedora_2013-18348.nasl
http://nessus.org/plugins/index.php?view=single&id=70425
Fedora 18 : zabbix-2.0.8-3.fc18 / zabbix-2.0.8-3.fc18 (2013-18348)

70424 fedora_2013-18347.nasl
http://nessus.org/plugins/index.php?view=single&id=70424
Fedora 18 : elinks-0.12-0.33.pre6.fc18 / elinks-0.12-0.33.pre6.fc18
(2013-18347)

70423 fedora_2013-18323.nasl
http://nessus.org/plugins/index.php?view=single&id=70423
Fedora 20 : elinks-0.12-0.36.pre6.fc20 (2013-18323)

70422 fedora_2013-18314.nasl
http://nessus.org/plugins/index.php?view=single&id=70422
Fedora 20 : zabbix-2.0.8-3.fc20 (2013-18314)

70421 fedora_2013-18300.nasl
http://nessus.org/plugins/index.php?view=single&id=70421
Fedora 20 : xen-4.3.0-7.fc20 (2013-18300)

70420 fedora_2013-18251.nasl
http://nessus.org/plugins/index.php?view=single&id=70420
Fedora 18 : polarssl-1.2.9-1.fc18 / polarssl-1.2.9-1.fc18 (2013-18251)

70419 fedora_2013-18228.nasl
http://nessus.org/plugins/index.php?view=single&id=70419
Fedora 19 : polarssl-1.2.9-1.fc19 / polarssl-1.2.9-1.fc19 (2013-18228)

70418 fedora_2013-17923.nasl
http://nessus.org/plugins/index.php?view=single&id=70418
Fedora 20 : fedmsg-0.7.1-2.fc20 (2013-17923)

70417 debian_DSA-2779.nasl
http://nessus.org/plugins/index.php?view=single&id=70417
Debian DSA-2779-1 : libxml2 - denial of service

gunzip.inc

== OpenVAS plugins (6) ==

r18059 96209 gb_junos_cve-2004-0468.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_junos_cve-2004-0468.nasl?root=openvas&view=markup
Junos CVE-2004-0468

r18059 2013/gb_zabbix_62794.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_zabbix_62794.nasl?root=openvas&view=markup
ZABBIX API and Frontend Multiple SQL Injection Vulnerabilities

r18059 gb_ssh_junos_get_version.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_ssh_junos_get_version.nasl?root=openvas&view=markup
Get Junos Software Version

r18059 gb_shoreware_director_detect.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_shoreware_director_detect.nasl?root=openvas&view=markup
ShoreTel ShoreWare Director Detection

r18059 2013/gb_jboss_tomcat_62854.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_jboss_tomcat_62854.nasl?root=openvas&view=markup
Apache Tomcat/JBoss EJBInvokerServlet / JMXInvokerServlet (RMI over
HTTP) Marshalled Object Remote Code Execution

r18059 96208 gb_junos_cve-2009-3485.nasl
http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_junos_cve-2009-3485.nasl?root=openvas&view=markup
Junos CVE-2009-3485
_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: