Nessus
[Top] [All Lists]

FALSE POSITIVE

To: <nessus@list.nessus.org>
Subject: FALSE POSITIVE
From: "John Scherff" <JScherff@24hourfit.com>
Date: Mon, 4 Jun 2007 08:10:59 -0700
Delivered-to: sp-com-lists@consult.net
Delivered-to: nessus-list1@securepoint.com
Delivered-to: nessus@list.nessus.org
List-archive: <http://mail.nessus.org/pipermail/nessus>
List-help: <mailto:nessus-request@list.nessus.org?subject=help>
List-id: Discussion of Nessus software <nessus.list.nessus.org>
List-post: <mailto:nessus@list.nessus.org>
List-subscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=subscribe>
List-unsubscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=unsubscribe>
Sender: nessus-bounces@list.nessus.org
Thread-index: AcemupHpvml5nDz1QPG65UGSbaxkZA==
Thread-topic: FALSE POSITIVE
Plugin 25167 appears to be producing false-positives.  This plugin is in the "Windows : Microsoft Bulletins" family and tests for MS07-028 (flaw in CAPICOM).
 
The scan was run against a freshly-installed, fully-patched Windows 2003 R2 server with Citrix Presentation Server 4.5 installed.
 
Here are the usual answers to the usual questions:
  • Windows credentials (user name, password domain) are provided in the nessus config file
  • The Windows user account is in the Domain Admins group in the same domain as the server
  • The Windows account is not locked out
  • All other local checks are working (registry reads, service enumeration, account enumeration, etc.)
R/ John Scherff
_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
<Prev in Thread] Current Thread [Next in Thread>