would also be interesting to see comparision of
false-positive/false-negative rate in your scans. I.e. out of 35/50
vulnerabilities - how many of these were false alarms?

2011/11/8 Sébastien AUCOUTURIER <[email protected]>

> Hi friends,
> i promised weeks ago to give results of a compare nessus /ovas
> i run a test against a Win Server unpatch ... giving admin credentials
> to both nessus/openvas
>
> - homefeed nessus plugins were used, and openvas  full ultimate and very
> deep plugins  ones.
> i do not check if they were some false positive.
>
> here is my count ;
> Vulnerabilities detect by both (with same cvss score assign) :  104
> Vulnerabilities detect by both (with NOT the same cvss score assign ) :  67
> Vulnerabilities  only detect by nessus : 45
> Vulnerabilities  only detect by openvas : 50
>
> to my mind the vulns only detect by openvas are also detect by nessus
> but with the PRO-Feed License.
>
> i am very happy with OPENVAS Result !!!,
> just a litle bit suprise to see  different CVSS score for a same
> vulnerability.
> who s wrong who s right i do not dig in ...
>
> --
> | Sébastien AUCOUTURIER | Software Design Engineer Lead |
> | ITrust | 55 rue l'Occitane BP 67303 31673 LABEGE CEDEX
> | Email: [email protected] | Fixe Sdt. 05.67.34.67.80 | Fax.
> 09.80.08.37.23
> | IT Security Services & SaaS Editor  |
>
> _______________________________________________
> Openvas-plugins mailing list
> [email protected]
> http://lists.wald.intevation.org/mailman/listinfo/openvas-plugins
>
_______________________________________________
Openvas-plugins mailing list
[email protected]
http://lists.wald.intevation.org/mailman/listinfo/openvas-plugins

Reply via email to