Renaud Deraison wrote: > On Tue, Nov 18, 2003 at 08:33:01AM -0700, Gabriel L. Somlo wrote: > > Hi, > > > > Is there an alternative to smb_nt_ms03-049.nasl that really checks if > > the remote machine is vulnerable by attempting an exploit ? > > No. Patched systems and unpatched ones react the same way network-wise. > See my comment at http://cgi.nessus.org/plugins/dump.php3?id=11921
In some cases, it's possible to trigger a one-byte overflow which does not impact a vulnerable server, but yields an error reply from a non-vulnerable one (because it has additional error checking). Have you investigated this approach? _______________________________________________ Nessus mailing list [EMAIL PROTECTED] http://mail.nessus.org/mailman/listinfo/nessus
