Microsoft's MS03-039 Scanner Reports False Negatives
Renaud Deraison
deraison at nessus.org
Tue Sep 30 14:05:57 EDT 2003
On Tue, Sep 30, 2003 at 11:02:48AM -0700, Jack Polimer wrote:
> This is a little OT...
>
> I performed an MS03-039 scan with with Nessus and
> performed a sanity check with Microsoft's MS03-039
> scanner, KB824146Scan.exe. Microsoft's scanner
> reported instances of false negatives (scanner said
> box was patched when it was not) on devices that were
> known not to have been patched. Has anyone else run
> across this?
Last time I checked, Microsoft scanner would not be able to audit NT4.0
boxes which have port 139 disabled, so I'm not too surprised.
More information about the Nessus
mailing list