When used in the safe mode, you will get some false positives from some
systems after they are patched.  For example, to fix Redhat 7.2, you upgrade
from apache-1.3.22-2 to apache-1.3.22-6 which will still show up as
vulnerable to the safe check.

Regards,
Owen

-----Original Message-----
From: Renaud Deraison [mailto:[EMAIL PROTECTED]]
Sent: Sunday, June 23, 2002 7:45 AM
To: [EMAIL PROTECTED]
Subject: Re: The apache_chunked_encoding.nasl


On Sun, Jun 23, 2002 at 02:25:26PM +0200, Rasmus Theede wrote:
> Regarding the apache_chunked_encoding plugin: I can se that it is
describes
> as an attack scribt, by rading the sourcecode I can see it does some
banner
> grabbing, but the rest of the code im not sure about. My question is: is
> this plugin able to put down the servers or can I scan my (large) network
> with no fear??,

If you enable the option "safe checks" you can scan your network with no
fear, as it will just rely on the banner.

Reply via email to