Today, when a web server does not reply with a 404 error code, many
plugins issue false positives. So many in fact, that the report becomes
unusable.
Question: if Nessus detects that a web server does not respect the HTTP
protocol, and therefore does not reply properly to the requests, should
it disable all the CGI checks altogether and issue a big fat warning
explaining why the web server was not tested instead ?
-- Renaud
-
[EMAIL PROTECTED]: general discussions about Nessus.
* To unsubscribe, send a mail to [EMAIL PROTECTED] with
"unsubscribe nessus" in the body.