From joel.espunya at appstylus.com Fri Mar 2 08:13:48 2012 From: joel.espunya at appstylus.com (Joel Espunya) Date: Fri, 02 Mar 2012 15:13:48 +0100 Subject: [Nikto-discuss] Nikto Vulnerabilities Database Message-ID: <4F50D59C.4020203@appstylus.com> Hi! I would like to have a list of all the possible vulnerabilities that Nikto would detect and the messages that it would return if they are found. Where can I found this information? Thanks for you time, Joel Espunya From csullo at gmail.com Fri Mar 2 08:29:28 2012 From: csullo at gmail.com (Sullo) Date: Fri, 2 Mar 2012 09:29:28 -0500 Subject: [Nikto-discuss] Nikto Vulnerabilities Database In-Reply-To: <4F50D59C.4020203@appstylus.com> References: <4F50D59C.4020203@appstylus.com> Message-ID: On Fri, Mar 2, 2012 at 9:13 AM, Joel Espunya wrote: > Hi! > > I would like to have a list of all the possible vulnerabilities that Nikto > would detect and the messages that it would return if they are found. > Where can I found this information? There's not a complicated answer to this, but I have to ask why you are after this information? Regards, Sullo -- http://www.cirt.net? ?? |? ? ? http://richsec.com/ From bj.ahn at alcatel-lucent.com Wed Mar 21 13:21:08 2012 From: bj.ahn at alcatel-lucent.com (Ahn, Byung J (B J)) Date: Wed, 21 Mar 2012 13:21:08 -0500 Subject: [Nikto-discuss] Trying understand the impact of issues Message-ID: <6440EB3D9B6A5646B7B2B52D1A25B2707F7280D3@USNAVSXCHMBSA2.ndc.alcatel-lucent.com> I did the Nikto scan on the product that I am working and got the following report. I could not find any specific information on whether what impact it has on the product. (Severity, resolution, and etc.) Server banner has changed from Apache to Happy xxx Server, this may suggest a WAF or load balancer is in place BJ -------------- next part -------------- An HTML attachment was scrubbed... URL: From csullo at gmail.com Wed Mar 21 13:32:42 2012 From: csullo at gmail.com (Sullo) Date: Wed, 21 Mar 2012 14:32:42 -0400 Subject: [Nikto-discuss] Trying understand the impact of issues In-Reply-To: <6440EB3D9B6A5646B7B2B52D1A25B2707F7280D3@USNAVSXCHMBSA2.ndc.alcatel-lucent.com> References: <6440EB3D9B6A5646B7B2B52D1A25B2707F7280D3@USNAVSXCHMBSA2.ndc.alcatel-lucent.com> Message-ID: This means the initial sever banner (via http header) was "Apache," and then at some point during testing it changed to the "Happy" string. -Sullo On Mar 21, 2012, at 2:21 PM, "Ahn, Byung J (B J)" wrote: > > I did the Nikto scan on the product that I am working and got the following report. > I could not find any specific information on whether what impact it has on the product. > (Severity, resolution, and etc.) > > Server banner has changed from Apache to Happy xxx Server, this may suggest a WAF or load balancer is in place > > BJ > > _______________________________________________ > Nikto-discuss mailing list > Nikto-discuss at attrition.org > https://attrition.org/mailman/listinfo/nikto-discuss -------------- next part -------------- An HTML attachment was scrubbed... URL: