I have left the default scan settings as they were (as I noted, I'm new to nessus - haven't yet taken time to play around with them), I set the Target to localhost, and let it run for all plugins provided with the 2.6.6 install. I have not yet update the plugins, as this is a classified machine, and have not taken time to download and transfer.
Uncertain exactly how to easily determine which plugin is reporting this (newbie issues). The 'port' is displaying "mysql (3306/tcp)". All three warnings are differing flavors of the following: "...running a version of MySQL which is older then version 4.0.21..." -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of George A. Theall Sent: Thursday, December 08, 2005 8:05 AM To: [email protected] Subject: Re: 2.2.6 MySQL False Findings?? On Thu, Dec 08, 2005 at 07:25:29AM -0500, Moessbauer, David W. wrote: > I am new to Nessus and have recently loaded 2.2.6 on a Linux RH9 > system, and upon scanning have found a warning (actually 3) in > reference to some security issues with MySQL. The perplexing thing is > that MySQL is not a part of the load. Have you configured your scans to do local security checks? Which plugins are reporting the flaws? Or what do the reports say? George -- [EMAIL PROTECTED] _______________________________________________ Nessus mailing list [email protected] http://mail.nessus.org/mailman/listinfo/nessus _______________________________________________ Nessus mailing list [email protected] http://mail.nessus.org/mailman/listinfo/nessus
