Nessus
[Top] [All Lists]

Re: DCShop Plugin

To: nessus@list.nessus.org
Subject: Re: DCShop Plugin
From: "George A. Theall" <theall@tenablesecurity.com>
Date: Fri, 16 Mar 2007 13:03:30 -0400
Delivered-to: sp-com-lists@consult.net
Delivered-to: nessus-list1@securepoint.com
Delivered-to: nessus@list.nessus.org
In-reply-to: <OF7A2CDEB3.7EBB210A-ON072572A0.005776C9-072572A0.005929A4@cityofmesa.org>
List-archive: <http://mail.nessus.org/pipermail/nessus>
List-help: <mailto:nessus-request@list.nessus.org?subject=help>
List-id: Discussion of Nessus software <nessus.list.nessus.org>
List-post: <mailto:nessus@list.nessus.org>
List-subscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=subscribe>
List-unsubscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=unsubscribe>
References: <OF7A2CDEB3.7EBB210A-ON072572A0.005776C9-072572A0.005929A4@cityofmesa.org>
Sender: nessus-bounces@list.nessus.org
User-agent: Thunderbird 1.5.0.10 (X11/20070221)
On 03/16/07 12:13, Mike.Vasquez@cityofmesa.org wrote:

I'm trying to track down some information regarding a DCShop vulnerability to attempt to resolve the source of a false positive I'm seeing.

A 3rd party scan returned this result:
...
I have a Nessus 3.0 install on a windows server.

By third-party, you mean this wasn't from your Nessus 3 install?

Googling found: http://mail.nessus.org/pipermail/nessus-cvs/2003-April/msg00131.html - "dcshop_information_disclosure.nasl"
...
So, is this an older / retired / bad plugin?

It was removed back in 2005 at the author's request. If this was done by a third-party, you may want to check with them to ensure they were using an up-to-date set of plugins and Nessus install.

George
--
theall@tenablesecurity.com
_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus

<Prev in Thread] Current Thread [Next in Thread>