Forum Discussion
4 years ago
Exclude Filepath Support for Locate Command in Detection...
Exclude Filepath Support for Locate Command in Detection Plugins
Summary
The file paths contained in the file uploaded to the ‘Exclude Filepath’ setting under Advanced settings in the scan policy will now be filtered out of detection plugins that use the ‘locate’ command.
Impact
Customers using the ‘Exclude Filepath’ setting should no longer see results for the detection plugins listed below for any file paths contained in the file uploaded to the setting if the ‘locate’ or ‘find’ command was used for detection. This may result in less vulnerability findings.
Note
- These changes will automatically be picked up in the plugin feed, which means there is no need to upgrade Nessus or Tenable.sc to a certain version.
Plugins
- Java Detection and Identification (Linux / Unix) (147817)
- Apache Log4j Installed (Linux / Unix) (156000)
References
- Nessus - Advanced Settings documentation
- Tenable.io - Advanced Settings documentation
- Tenable.sc - Advanced Settings documentation
Target Release Date:
January 19, 2022 (released in Nessus plugin feed 202201200227)
1 Reply
These changes have been released in Nessus plugin feed 202201200227.