Metasploitable 2 – Vuln scan with Nessus

One of the simplest ways to spot a simple attack vector is to simply peform a simple vuln check against the box.

In this case I am going to use Nessus Home (https://www.tenable.com/products/nessus-home) as it is free to sign up and does the job well.

Once Nessus Home is up and running (and up to date) we can kick off a scan against our box:Nessus Scan

And once complete we can take a look at the results:

Nessus_Metasploitable_summary

The full list of results with details can be found here:

Nessus Scan Report