[prev in list] [next in list] [prev in thread] [next in thread] 

List:       openvas-cvs
Subject:    [Openvas-commits] r5341 - in trunk/openvas-plugins: . scripts
From:       scm-commit () wald ! intevation ! org
Date:       2009-09-30 15:26:39
Message-ID: 20090930152639.BD65085D9F42 () pyrosoma ! intevation ! org
[Download RAW message or body]

Author: reinke
Date: 2009-09-30 17:26:37 +0200 (Wed, 30 Sep 2009)
New Revision: 5341

Modified:
   trunk/openvas-plugins/ChangeLog
   trunk/openvas-plugins/scripts/gb_apache_tomcat_xss_vuln.nasl
Log:


Modified: trunk/openvas-plugins/ChangeLog
===================================================================
--- trunk/openvas-plugins/ChangeLog	2009-09-30 15:08:03 UTC (rev 5340)
+++ trunk/openvas-plugins/ChangeLog	2009-09-30 15:26:37 UTC (rev 5341)
@@ -1,3 +1,10 @@
+2009-09-29  Thomas Reinke <reinke@securityspace.com>
+
+	* scripts/gb_apache_tomcat_xss_vuln.nasl:
+	Bug fix: don't fall through to safe_check() version
+	number check if already confirmed not a problem with
+	the actual script check.
+
 2009-09-29  Chandrashekhar B <bchandra@secpod.com>
 
 	* scripts/secpod_ms_wpp_enterprise_library_detect.nasl,
@@ -10,7 +17,7 @@
 	scripts/secpod_silc_prdts_detect.nasl:
 	Added new plugins.
 
-2009-09-21  Thomas Reinke <reinke@securityspace.com>
+2009-09-27  Thomas Reinke <reinke@securityspace.com>
 
 	* scripts/deb_1891_1.nasl,
 	scripts/deb_1892_1.nasl,

Modified: trunk/openvas-plugins/scripts/gb_apache_tomcat_xss_vuln.nasl
===================================================================
--- trunk/openvas-plugins/scripts/gb_apache_tomcat_xss_vuln.nasl	2009-09-30 15:08:03 UTC (rev 5340)
+++ trunk/openvas-plugins/scripts/gb_apache_tomcat_xss_vuln.nasl	2009-09-30 15:26:37 UTC (rev 5341)
@@ -101,10 +101,11 @@
     security_warning(port);
     exit(0);
   }
-}
+} else {
 
-if(version_in_range(version:tomcatVer, test_version:"4.1.0", test_version2:"4.1.39") ||
-   version_in_range(version:tomcatVer, test_version:"5.5.0", test_version2:"5.5.27") ||
-   version_in_range(version:tomcatVer, test_version:"6.0.0", test_version2:"6.0.18")){
-  security_warning(port);
+  if(version_in_range(version:tomcatVer, test_version:"4.1.0", test_version2:"4.1.39") ||
+     version_in_range(version:tomcatVer, test_version:"5.5.0", test_version2:"5.5.27") ||
+     version_in_range(version:tomcatVer, test_version:"6.0.0", test_version2:"6.0.18")){
+    security_warning(port);
+  }
 }

_______________________________________________
Openvas-commits mailing list
Openvas-commits@wald.intevation.org
http://lists.wald.intevation.org/mailman/listinfo/openvas-commits
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic