On Thu, Jan 22, 2004 at 04:19:04PM -0500, [EMAIL PROTECTED] wrote: > Anyone seen any false positives with mssmtp_null_auth.nasl? I have a system the > admins are swearing is patched, but when I manually test it (based on the NASL > code) it replies exactly as expected for a vulnerable system (again, according > to the NASL). It's Exchange 5.5 on NT.
I don't have any experience with false positives, but the plugin seems pretty straightforward. Have you verified it either using DSBL Tester -- see <http://www.firestuff.org/projects/dsbl-testers/README> -- or manually using the transcript in Bindview's original advisory -- <http://razor.bindview.com/publish/advisories/adv_iis_smtp_null_relay.html>? George -- [EMAIL PROTECTED]
pgp00000.pgp
Description: PGP signature
_______________________________________________ Nessus mailing list [EMAIL PROTECTED] http://mail.nessus.org/mailman/listinfo/nessus
