On Thu, Jan 22, 2004 at 04:19:04PM -0500, [EMAIL PROTECTED] wrote:

> Anyone seen any false positives with mssmtp_null_auth.nasl?  I have a system the
> admins are swearing is patched, but when I manually test it (based on the NASL
> code) it replies exactly as expected for a vulnerable system (again, according
> to the NASL). It's Exchange 5.5 on NT.

I don't have any experience with false positives, but the plugin seems
pretty straightforward.  Have you verified it either using DSBL Tester
-- see <http://www.firestuff.org/projects/dsbl-testers/README> -- or
manually using the transcript in Bindview's original advisory --
<http://razor.bindview.com/publish/advisories/adv_iis_smtp_null_relay.html>?

George
-- 
[EMAIL PROTECTED]

Attachment: pgp00000.pgp
Description: PGP signature

_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to