From cc5a8ee7fc96f85705479c80aebc0698f4e678c9 Mon Sep 17 00:00:00 2001 From: fyodor Date: Fri, 13 Aug 2010 09:37:56 +0000 Subject: [PATCH] Add an NSE script idea (new MSRPC bug) --- todo/nmap.txt | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/todo/nmap.txt b/todo/nmap.txt index 06d171db2..e6462c865 100644 --- a/todo/nmap.txt +++ b/todo/nmap.txt @@ -158,6 +158,10 @@ o [NSE] Consider using .idl files rather than manually coding all the application in nmap-private-dev which converts .idl files to LUA code for nmap/nselib. Consider adapting the pidl utility from Samba. +o [NSE] Consider a script (or modification to smb-check-vulns) to + detect this MSRPC vulnerability: + http://seclists.org/fulldisclosure/2010/Aug/122 + o nmap.cgi web interface for Nmap - We're working on Rainmap hosted scanning system -- see /nmap-exp/rainmap - Should have "demo" mode that only allows users to scan their own addy