Questions tagged [openvas]

.Open Source tool for automated vulnerability scanning

http://www.openvas.org/

OpenVAS is a framework of several services and tools offering a comprehensive and powerful vulnerability scanning and vulnerability management solution.

26 questions
17
votes
4 answers

Reset admin password of OpenVAS

When I installed OpenVAS, I was prompted for a password, however the prompt errored out. I have installed OpenVAS and it is working properly, however I cant get in as admin (I created a new user and that works fine). I've tried googling how to reset…
Sugitime
  • 415
  • 1
  • 4
  • 12
5
votes
2 answers

Is it worth running nessus as well as OpenVAS?

Apparently OpenVAS originated as a fork of Nessus. It is very easy to install and use OpenVAS because it's, well, open. However, am I kidding myself if I just use that instead of Nessus? Should I be using both, or if I use Nessus then is OpenVAS…
kdt
  • 1,360
  • 3
  • 22
  • 34
2
votes
1 answer

Warning: SecInfo Database Missing even though Feeds appear to be downloaded

I get the "SecInfo Database Missing" error: SCAP and/or CERT database missing on OMP server. Even though I manually started a sync task and in the status it appears they are all complete (and have been for 20 minutes) And in the console "about":…
THE JOATMON
  • 266
  • 8
  • 29
2
votes
1 answer

Openvas 9 LDAP Authentication

I am trying to configure Openvas 9 to use LDAP, for the login to the Greenbone software. It appears as based off of other threads, this issue with LDAP in unresolved unless I am seriously mistaken. My problems is that I am trying to allow multiple…
Steve G
  • 21
  • 1
  • 3
2
votes
2 answers

openVAS - Microsoft RDP Server Private Key Information Disclosure Vulnerability - false Alarm?

I performed a openVAS scan on a Windows Server 2008 R2 and got a report for a high threat level vulnerability called Microsoft RDP Server Private Key Information Disclosure Vulnerability. An remote attacker could perform a man-in-the-middle attack…
hub
  • 342
  • 1
  • 4
  • 15
1
vote
0 answers

SOLVED - Kali linux openvas installation fail

I have Kali 2019.4 installed into a Virtualbox machine (4GB, 2-CPU) fully updated and upgraded. I'm trying to install openvas directly from the Kali repository (apt install openvas) as root, but it is not able to complete the installation…
kappa
  • 111
  • 3
1
vote
2 answers

OpenVAS Feed Status: How to check the automatic synchronization?

I've just installed OpenVAS ... however when I checked on Feed Status, I found that OpenVAS CERT Feed is too old as shown in the screenshot below. Too old (14 days) - Please check the automatic synchronization of your system The solution suggested…
Sabrina
  • 190
  • 1
  • 2
  • 10
1
vote
0 answers

OpenVas report directory

Could anyone please tell me where the reports generated by the OpenVas is stored in harddrive. I know the report can be downloaded from the web interface, but I really need to know its location in directory. I installed OpenVas 9 in Debian 9. Also,…
1
vote
2 answers

How to disable TCP timestamps on a Mikrotik router?

I'm using OpenVAS as vulnerability scanner and I completed a local network scanning which also involves a MikroTik router as default gateway. The router shows a weakness, better known as "TCP timestamp" vulnerability. In light of the above, how…
L.Bas
  • 13
  • 6
1
vote
1 answer

OpenVAS With NVT Feed Sync Error on Kail Linux and Ubuntu

Recently installed OpenVAS on Kail Linux and Ubuntu from ISO but have been running into an issue with the sync process. When installed onto VMware Workstation via Kail VM image updates the openvas-Setup process all updates fine. When Kail Linux…
1
vote
2 answers

OpenVAS on CentOS7 Redis won't start

I am trying to get OpenVAS working per the the article below. https://www.atlantic.net/community/howto/install-openvas-vulnerability-scanner-centos-7 However it isn't working, when I run openvas-check-setup I get this error below and when I check…
Thorin
  • 209
  • 1
  • 4
  • 11
1
vote
1 answer

How can I add credentials for the enable password level of access to Cisco routers for openvas?

I just started playing with the OpenVAS virtual appliance. So I added credentials for ssh which will be used to access Cisco routers: So this will let OpenVAS login to user mode, but how will it access enable mode? Or am I going about this the…
red888
  • 4,069
  • 16
  • 58
  • 104
1
vote
1 answer

Openvas ldap authentication configuration

I'm stuck in the process of Openvas ldap authentication configuration. I use the following openvas components version from upstream: openvas libraries - 8.0.3 openvas manager - 6.0.3 (both installed from self made ppa repo openvas8) Distro…
Vitenberg
  • 11
  • 1
  • 4
1
vote
1 answer

OpenVAS 7 failing to SSH into a test server

My local machine is hosting a Kali VM. I am trying to run local security tests using the VM's OpenVAS 7 on a server running Ubuntu 12.04.5. When I run SSH Authorization Test I get the following result: "It was not possible to login using the…
1
vote
2 answers

Lightweight alternatives to openvas

Are there any lightweight alternatives to openvas? openvas is decent, but is quite resource-hungry. The server is starting slow when there are lots of plugins. The GTK client eats 100% of CPU when connecting to the server and when performing…
Anonymous
  • 1,540
  • 1
  • 14
  • 18
1
2