Nmap Development mailing list archives
New VA Modules: MSF: 5, Nessus: 33, OpenVAS: 6
From: New VA Module Alert Service <postmaster () insecure org>
Date: Wed, 16 Oct 2013 10:00:45 +0000 (UTC)
This report describes any new scripts/modules/exploits added to Nmap, Metasploit, Nessus, and OpenVAS since yesterday. == Metasploit modules (5) == da485650 https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/cmd/unix/bind_nodejs.rb Unix Command Shell, Bind TCP (via nodejs) da485650 https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/cmd/unix/reverse_nodejs.rb Unix Command Shell, Reverse TCP (via nodejs) da485650 https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/payloads/singles/nodejs/shell_bind_tcp.rb Command Shell, Bind TCP (via nodejs) 171b70fa https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/linux/http/zabbix_sqli.rb Zabbix 2.0.8 SQL Injection and Remote Code Execution 008f7876 https://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/auxiliary/scanner/http/dlink_user_agent_backdoor.rb DLink User-Agent Backdoor Scanner == Nessus plugins (33) == 70448 vmware_cim_services_rce.nasl http://nessus.org/plugins/index.php?view=single&id=70448 VMware ESX/ESXi CIM Services Multiple Vulnerabilities 70447 dlink_router_user_agent_auth_bypass.nasl http://nessus.org/plugins/index.php?view=single&id=70447 alpha_auth_check() Function Remote Authentication Bypass 70446 proftpd_rce.nasl http://nessus.org/plugins/index.php?view=single&id=70446 ProFTPD TELNET IAC Escape Sequence Remote Buffer Overflow 70445 solaris10_x86_150837.nasl http://nessus.org/plugins/index.php?view=single&id=70445 Solaris 10 (x86) : 150837-01 70444 solaris10_x86_150619.nasl http://nessus.org/plugins/index.php?view=single&id=70444 Solaris 10 (x86) : 150619-02 70443 solaris10_150836.nasl http://nessus.org/plugins/index.php?view=single&id=70443 Solaris 10 (sparc) : 150836-01 70442 solaris10_150618.nasl http://nessus.org/plugins/index.php?view=single&id=70442 Solaris 10 (sparc) : 150618-02 70441 Slackware_SSA_2013-287-05.nasl http://nessus.org/plugins/index.php?view=single&id=70441 Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 / 14.0 / current : xorg-server (SSA:2013-287-05) 70440 Slackware_SSA_2013-287-04.nasl http://nessus.org/plugins/index.php?view=single&id=70440 Slackware 13.37 / 14.0 : libgpg-error (SSA:2013-287-04) 70439 Slackware_SSA_2013-287-03.nasl http://nessus.org/plugins/index.php?view=single&id=70439 Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 : gnutls (SSA:2013-287-03) 70438 Slackware_SSA_2013-287-02.nasl http://nessus.org/plugins/index.php?view=single&id=70438 Slackware 13.37 / 14.0 / current : gnupg2 (SSA:2013-287-02) 70437 Slackware_SSA_2013-287-01.nasl http://nessus.org/plugins/index.php?view=single&id=70437 Slackware 12.1 / 12.2 / 13.0 / 13.1 / 13.37 / 14.0 / current : gnupg (SSA:2013-287-01) 70436 fedora_2013-18867.nasl http://nessus.org/plugins/index.php?view=single&id=70436 Fedora 20 : kernel-3.11.4-301.fc20 (2013-18867) 70435 fedora_2013-18866.nasl http://nessus.org/plugins/index.php?view=single&id=70435 Fedora 20 : gnupg2-2.0.22-1.fc20 (2013-18866) 70434 fedora_2013-18820.nasl http://nessus.org/plugins/index.php?view=single&id=70434 Fedora 19 : kernel-3.11.4-201.fc19 / kernel-3.11.4-201.fc19 (2013-18820) 70433 fedora_2013-18807.nasl http://nessus.org/plugins/index.php?view=single&id=70433 Fedora 19 : gnupg2-2.0.22-1.fc19 / gnupg2-2.0.22-1.fc19 (2013-18807) 70432 fedora_2013-18715.nasl http://nessus.org/plugins/index.php?view=single&id=70432 Fedora 20 : qemu-1.6.0-10.fc20 (2013-18715) 70431 fedora_2013-18579.nasl http://nessus.org/plugins/index.php?view=single&id=70431 Fedora 20 : mod_fcgid-2.3.9-1.fc20 (2013-18579) 70430 fedora_2013-18493.nasl http://nessus.org/plugins/index.php?view=single&id=70430 Fedora 19 : qemu-1.4.2-12.fc19 / qemu-1.4.2-12.fc19 (2013-18493) 70429 fedora_2013-18404.nasl http://nessus.org/plugins/index.php?view=single&id=70429 Fedora 19 : elinks-0.12-0.35.pre6.fc19 / elinks-0.12-0.35.pre6.fc19 (2013-18404) 70428 fedora_2013-18378.nasl http://nessus.org/plugins/index.php?view=single&id=70428 Fedora 19 : xen-4.2.3-3.fc19 / xen-4.2.3-3.fc19 (2013-18378) 70427 fedora_2013-18373.nasl http://nessus.org/plugins/index.php?view=single&id=70427 Fedora 18 : xen-4.2.3-3.fc18 / xen-4.2.3-3.fc18 (2013-18373) 70426 fedora_2013-18351.nasl http://nessus.org/plugins/index.php?view=single&id=70426 Fedora 19 : zabbix-2.0.8-3.fc19 / zabbix-2.0.8-3.fc19 (2013-18351) 70425 fedora_2013-18348.nasl http://nessus.org/plugins/index.php?view=single&id=70425 Fedora 18 : zabbix-2.0.8-3.fc18 / zabbix-2.0.8-3.fc18 (2013-18348) 70424 fedora_2013-18347.nasl http://nessus.org/plugins/index.php?view=single&id=70424 Fedora 18 : elinks-0.12-0.33.pre6.fc18 / elinks-0.12-0.33.pre6.fc18 (2013-18347) 70423 fedora_2013-18323.nasl http://nessus.org/plugins/index.php?view=single&id=70423 Fedora 20 : elinks-0.12-0.36.pre6.fc20 (2013-18323) 70422 fedora_2013-18314.nasl http://nessus.org/plugins/index.php?view=single&id=70422 Fedora 20 : zabbix-2.0.8-3.fc20 (2013-18314) 70421 fedora_2013-18300.nasl http://nessus.org/plugins/index.php?view=single&id=70421 Fedora 20 : xen-4.3.0-7.fc20 (2013-18300) 70420 fedora_2013-18251.nasl http://nessus.org/plugins/index.php?view=single&id=70420 Fedora 18 : polarssl-1.2.9-1.fc18 / polarssl-1.2.9-1.fc18 (2013-18251) 70419 fedora_2013-18228.nasl http://nessus.org/plugins/index.php?view=single&id=70419 Fedora 19 : polarssl-1.2.9-1.fc19 / polarssl-1.2.9-1.fc19 (2013-18228) 70418 fedora_2013-17923.nasl http://nessus.org/plugins/index.php?view=single&id=70418 Fedora 20 : fedmsg-0.7.1-2.fc20 (2013-17923) 70417 debian_DSA-2779.nasl http://nessus.org/plugins/index.php?view=single&id=70417 Debian DSA-2779-1 : libxml2 - denial of service gunzip.inc == OpenVAS plugins (6) == r18059 96209 gb_junos_cve-2004-0468.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_junos_cve-2004-0468.nasl?root=openvas&view=markup Junos CVE-2004-0468 r18059 2013/gb_zabbix_62794.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_zabbix_62794.nasl?root=openvas&view=markup ZABBIX API and Frontend Multiple SQL Injection Vulnerabilities r18059 gb_ssh_junos_get_version.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_ssh_junos_get_version.nasl?root=openvas&view=markup Get Junos Software Version r18059 gb_shoreware_director_detect.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_shoreware_director_detect.nasl?root=openvas&view=markup ShoreTel ShoreWare Director Detection r18059 2013/gb_jboss_tomcat_62854.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/2013/gb_jboss_tomcat_62854.nasl?root=openvas&view=markup Apache Tomcat/JBoss EJBInvokerServlet / JMXInvokerServlet (RMI over HTTP) Marshalled Object Remote Code Execution r18059 96208 gb_junos_cve-2009-3485.nasl http://wald.intevation.org/scm/viewvc.php/trunk/openvas-plugins/scripts/gb_junos_cve-2009-3485.nasl?root=openvas&view=markup Junos CVE-2009-3485 _______________________________________________ Sent through the dev mailing list http://nmap.org/mailman/listinfo/dev Archived at http://seclists.org/nmap-dev/
Current thread:
- New VA Modules: MSF: 5, Nessus: 33, OpenVAS: 6 New VA Module Alert Service (Oct 16)
