22
Oct
2010

NessusDB v1.1 Release

Yesterday NessusDB v1.1 was pushed to ruby gems, below are the release notes. Major changes are updated the parser to handle most of the new exploitability tags added by Tenable. Two more report templates were also added, PCI/DSS Audit report and an Assets report template. It is highly recommend anyone using NessusDB upgrade to this latest version.


1.1.0 (October 22, 2010)
===
        - Fixed a typo on the classification argument
        - Added a assets report template
        - Added a simple PCI/DSS compliance report template (Requires Professional Feed)
        - Updated the parser to take into account the new fields
                - HostProperties attribute: pci-dss-compliance
                - New XML element: exploitability_ease. 
                - New XML element: cvss_temporal_vector.
                - New XML element: exploit_framework_core.
                - New XML element: cvss_temporal_score. 
                - New XML element: exploit_available.
                - New XML element: exploit_framework_metasploit.
                - New XML element: metasploit_name
                - New XML element: exploit_framework_canvas
                - New XML element: canvas_package
        - Updated technical findings template to account for the new exploitability values
        - Fixed a bug with the way I was blacklisting the scan box        

New Sample Reports: