Renaud Deraison wrote:

> On Tue, Nov 18, 2003 at 08:33:01AM -0700, Gabriel L. Somlo wrote:
> > Hi,
> > 
> > Is there an alternative to smb_nt_ms03-049.nasl that really checks if
> > the remote machine is vulnerable by attempting an exploit ? 
> 
> No. Patched systems and unpatched ones react the same way network-wise.
> See my comment at http://cgi.nessus.org/plugins/dump.php3?id=11921

In some cases, it's possible to trigger a one-byte overflow which does
not impact a vulnerable server, but yields an error reply from a
non-vulnerable one (because it has additional error checking).  Have you
investigated this approach?
_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to