Nmap scripts: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
Zeile 50: Zeile 50:
 
=ssl misc=
 
=ssl misc=
 
*[[nmap-scripts-ssl]]
 
*[[nmap-scripts-ssl]]
 +
=smtp misc=
 +
*[[nmap-scripts-smtp]]
  
 
=links=
 
=links=

Version vom 26. Februar 2023, 13:36 Uhr

Locate the scripts

  • locate nse | grep scripts

Finding Vulnerability Scanning Scripts

  • locate *vuln*.nse

Alle Schwachstellen

  • nmap -sV --script vulners 10.0.10.104


Finde Offene Proxys

  • nmap --script "http-open-proxy" -p 3128 10.82.10.40
Host is up (0.0033s latency).
rDNS record for 10.82.10.40: squid.linux.lab

PORT     STATE SERVICE
3128/tcp open  squid-http
| http-open-proxy: Potentially OPEN proxy.
|_Methods supported: GET HEAD CONNECTION

Help with a script

  • nmap --script-help=nfs-showmount.nse
Starting Nmap 7.60 ( https://nmap.org ) at 2017-11-13 07:26 CET

nfs-showmount
Categories: discovery safe
https://nmap.org/nsedoc/scripts/nfs-showmount.html
  Shows NFS exports, like the <code>showmount -e</code> command.

NFS Check

  • nmap -sV --script=nfs-showmount.nse 10.82.10.40

SMB Check

  • nmap -p 445 --script smb-os-discovery 10.82.10.40

Traceroute Geolocation

  • nmap --traceroute --script traceroute-geolocation.nse -p 80 www.facebook.com

Show HTTP Title

  • nmap --script http-title -sV -p 443 10.3.4.12

Find Files or interestings Dirs on Webserver

  • nmap --script http-enum -p 443 10.3.4.12

FTP Bannergrabbing

  • nmap -sV -p 21 --script=banner 10.3.4.12

HTTP Bannergrabbing

  • nmap -sV -p 80 --script=banner 10.3.4.12

Update the Script Database

  • nmap --script-updatedb

ssh misc

ssl misc

smtp misc

links