On Thu, Apr 01, 2004 at 06:42:46AM -0500, Keyur Lavingia wrote:

> Thanks for the help. The server banner is as below:
...
> This is what both 12110 and 11060 should get, am I right ? 

Plugin 11060 doesn't look at banners, only 12110 does.  That's why I was
confused when you said originally that 12110 generated a false positive. 

> I was not aware of the recent change to
> 11060. 

Looks like Renaud made a change 3 days ago to avoid false positives. 
1.21 is the latest I see, implemented 3/29. 

> Looking at the source of the plugin, I see that there are two
> descriptions for the report in the code. What I am getting on Nessus is the
> first description, but the second one (at the bottom part of the plugin) is
> actually more correct for a false positive.

Then you don't have safe_checks enabled. 

> Please advise.

If you're not scanning with the latest version of the plugin, upgrade
and rescan.  Do you still see the "vulnerability"?

George
-- 
[EMAIL PROTECTED]

Attachment: pgp00000.pgp
Description: PGP signature

_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to