Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Nessus-Users
[Top] [All Lists]

Re: False Positive - Nessus ID 25166?

Subject: Re: False Positive - Nessus ID 25166?
Date: Fri, 28 Mar 2008 11:02:59 +0100


Sorry for the delay,

This issue has been fixed and the change will be reflected in the plugin feed shortly.
Note that we recommend to perform scans with a domain admin account (which can mount C$). As time goes, this will become a mandatory requirement to perform patch checks with Nessus on Windows.



-- Renaud


On Mar 27, 2008, at 9:29 PM, Kofoed, George x55379 wrote:


From: nessus-bounces@list.nessus.org [mailto:nessus-bounces@list.nessus.org ] On Behalf Of Kofoed, George x55379
Sent: Tuesday, March 25, 2008 6:36 PM
To: Renaud Deraison (lists); Nessus list
Subject: RE: False Positive - Nessus ID 25166?


From: nessus-bounces@list.nessus.org [mailto:nessus-bounces@list.nessus.org ] On Behalf Of Renaud Deraison (lists)
Sent: Tuesday, March 25, 2008 10:31 AM
To: Nessus list
Subject: Re: False Positive - Nessus ID 25166?



On Mar 25, 2008, at 3:21 PM, Kofoed, George x55379 wrote:

A recent scan of my AD server indicates that patch MS07-027 – Cumulative Security Update for Internet Explorer (931768) – is missing. This patch was replaced several times over since its release, and the current cumulative patch MS07-069, Q number 942615 is installed on this server. I’ve noticed this issue frequently with other servers also. Is there anything I can do on my end, or is this an issue with this particular plugin?

Are you scanning with admin privileges ? Could you tell us what version of the file mshtml.dll is installed on that system ?

Thanks,
                                                -- Renaud

= = = ======================================================================

The user I have configured in Nessus is an “OUADMIN” user.
The version of mshtml.dll is 6.0.3790.4210






This message and any attachments are intended only for the use of the addressee and
may contain information that is privileged and confidential. If the reader of the
message is not the intended recipient or an authorized representative of the
intended recipient, you are hereby notified that any dissemination of this
communication is strictly prohibited. If you have received this communication in
error, please notify us immediately by e-mail and delete the message and any
attachments from your system.
This message and any attachments are intended only for the use of the addressee and
may contain information that is privileged and confidential. If the reader of the
message is not the intended recipient or an authorized representative of the
intended recipient, you are hereby notified that any dissemination of this
communication is strictly prohibited. If you have received this communication in
error, please notify us immediately by e-mail and delete the message and any
attachments from your system.
This message and any attachments are intended only for the use of the addressee and
may contain information that is privileged and confidential. If the reader of the
message is not the intended recipient or an authorized representative of the
intended recipient, you are hereby notified that any dissemination of this
communication is strictly prohibited. If you have received this communication in
error, please notify us immediately by e-mail and delete the message and any
attachments from your system.




_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
<Prev in Thread] Current Thread [Next in Thread>