Nmap scripts: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
 
(2 dazwischenliegende Versionen desselben Benutzers werden nicht angezeigt)
Zeile 7: Zeile 7:
 
*ls
 
*ls
  
=Hilfe=
+
=help=
*nmap --script-help=ssh-hostkey
+
*[[nmap-scripts-help]]
<pre>
 
Starting Nmap 7.80 ( https://nmap.org ) at 2023-03-01 05:06 CET
 
  
ssh-hostkey
 
Categories: safe default discovery
 
https://nmap.org/nsedoc/scripts/ssh-hostkey.html
 
  Shows SSH hostkeys.
 
 
  Shows the target SSH server's key fingerprint and (with high enough
 
  verbosity level) the public key itself.  It records the discovered host keys
 
  in <code>nmap.registry</code> for use by other scripts.  Output can be
 
  controlled with the <code>ssh_hostkey</code> script argument.
 
 
  You may also compare the retrieved key with the keys in your known-hosts
 
  file using the <code>known-hosts</code> argument.
 
 
  The script also includes a postrule that check for duplicate hosts using the
 
  gathered keys.
 
</pre>
 
 
=ssh misc=
 
=ssh misc=
 
*[[nmap-scripts-ssh]]
 
*[[nmap-scripts-ssh]]
Zeile 48: Zeile 30:
 
*nmap -sV --script vulners 10.0.10.104
 
*nmap -sV --script vulners 10.0.10.104
  
 
=Help with a script=
 
*nmap  --script-help=nfs-showmount.nse
 
<pre>
 
Starting Nmap 7.60 ( https://nmap.org ) at 2017-11-13 07:26 CET
 
 
nfs-showmount
 
Categories: discovery safe
 
https://nmap.org/nsedoc/scripts/nfs-showmount.html
 
  Shows NFS exports, like the <code>showmount -e</code> command.
 
</pre>
 
  
 
=NFS Check=
 
=NFS Check=

Aktuelle Version vom 1. März 2023, 04:13 Uhr

Locate the scripts

  • locate nse | grep scripts

Finding Vulnerability Scanning Scripts

  • locate *vuln*.nse

oder besser

  • cd /usr/share/nmap/scripts
  • ls

help

ssh misc

ssl misc

smtp misc

proxy misc

http misc

wordpress-version misc


Alle Schwachstellen

  • nmap -sV --script vulners 10.0.10.104


NFS Check

  • nmap -sV --script=nfs-showmount.nse 10.82.10.40

SMB Check

  • nmap -p 445 --script smb-os-discovery 10.82.10.40

Traceroute Geolocation

  • nmap --traceroute --script traceroute-geolocation.nse -p 80 www.facebook.com

FTP Bannergrabbing

  • nmap -sV -p 21 --script=banner 10.3.4.12

Update the Script Database

  • nmap --script-updatedb

links