On Freitag, 25. Januar 2013, Sebastien Aucouturier wrote:
> >> Overview tell the facts when vulnerability is detect:
> >> script_tag(name:"overview", value:"The remote host contains a CGI 
> >> which
> >> is vulnerable to a cross-site scripting issue.");
> >
> > Well, this is basically redundant with <summary+"yes">.
> 
> Should be, but we got plugins, that now  does not let us say that, as 
> example :
> 
> gb_winftp_serv_bof_vuln.nasl :
> 
> summary is : Check for the version of WinFTP Server
> 
> when in overview part of field description we got :
> Overview: This host is running WinFTP Server and is prone to Buffer 
> Overflow vulnerability.
> 
> So here : overview is not summary+yes :-(

OK, but I'd say its a bug in the NVT. The summary suggests it is a
_detect script.
I think such situations should be resolved by fixing the NVT.


-- 
Dr. Jan-Oliver Wagner |  ++49-541-335084-0  |  http://www.greenbone.net/
Greenbone Networks GmbH, Neuer Graben 17, 49074 Osnabrück | AG Osnabrück, HR B 
202460
Geschäftsführer: Lukas Grunwald, Dr. Jan-Oliver Wagner
_______________________________________________
Openvas-plugins mailing list
[email protected]
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-plugins

Reply via email to