Hi,

I wonder if anyone has been bothered by proclivity for Nessus to produce 
pseudo-duplicate
results.  For example, if I enable all of the "Apache < some_version" plugins, I get 
several results for many systems...

Consider that these vulnerabilities have different severities, in this case

Apache older than 1.3.29

I judge this as low.

Apache older than 1.3.28
Apache older than 1.3.27

I judge these as low to moderate.

So you need to include at least 1.3.29 and 1.3.28 to be complete.

Nessus is a scanner; it's up to the user to interpret the results.

Paul

--
Paul Johnston
Internet Security Specialist
Westpoint Limited
Albion Wharf, 19 Albion Street,
Manchester, M1 5LN
England
Tel: +44 (0)161 237 1028
Fax: +44 (0)161 237 1031
email: [EMAIL PROTECTED]
web: www.westpoint.ltd.uk


_______________________________________________ Nessus mailing list [EMAIL PROTECTED] http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to