-
Notifications
You must be signed in to change notification settings - Fork 0
/
Nessus2Table.java
139 lines (122 loc) · 4.21 KB
/
Nessus2Table.java
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
// This will convert multiple XML .nessus files into one XMLTable Report
// java Nessus2Table file1.nessus file2.nessus > output.[html/xls]
import java.io.File;
import java.io.IOException;
import java.util.ArrayList;
import javax.xml.parsers.DocumentBuilder;
import javax.xml.parsers.DocumentBuilderFactory;
import javax.xml.parsers.ParserConfigurationException;
import org.w3c.dom.Document;
import org.w3c.dom.Element;
import org.w3c.dom.Node;
import org.w3c.dom.NodeList;
public class Nessus2Table {
public static void main(String args[]) throws IOException, ParserConfigurationException,
org.xml.sax.SAXException {
try {
// Need to convert this to array lists
String tableA[][] = new String [100000][9];
String host = null;
int m = 0;
int n = 0;
int u = 0;
String hostSet = "-";
String portSet = "-";
for (int a = 0; a < args.length; a++)
{
File file = new File(args[a]);
DocumentBuilderFactory dbf = DocumentBuilderFactory.newInstance();
DocumentBuilder db = dbf.newDocumentBuilder();
Document doc = db.parse(file);
doc.getDocumentElement().normalize();
NodeList nodeLst = doc.getElementsByTagName("ReportHost");
for (int s = 0; s < nodeLst.getLength(); s++)
{
Node fstNode = nodeLst.item(s);
if (fstNode.getNodeType() == Node.ELEMENT_NODE)
{
Element fstElmnt = (Element) fstNode;
host = fstElmnt.getAttributes().getNamedItem("name").getNodeValue();
NodeList fstNmElmntLst = fstElmnt.getElementsByTagName("ReportItem");
for (int i=0; i < fstNmElmntLst.getLength(); i++)
{
Element fstNmElmnt = (Element) fstNmElmntLst.item(i);
if (fstNmElmnt.getAttributes().getNamedItem("severity").getNodeValue() == "0") break;
tableA[n][0] = fstNmElmnt.getAttributes().getNamedItem("severity").getNodeValue();
tableA[n][1] = fstNmElmnt.getAttributes().getNamedItem("pluginName").getNodeValue();
String port = fstNmElmnt.getAttributes().getNamedItem("port").getNodeValue();
String proto = fstNmElmnt.getAttributes().getNamedItem("protocol").getNodeValue();
String service = fstNmElmnt.getAttributes().getNamedItem("svc_name").getNodeValue();
tableA[n][2] = port + "/" + proto + "/" + service;
tableA[n][3] = host;
n++;
}
} // end of if
} // end of for loop 2
} // end of for loop 1
System.out.println("<table border=1>");
System.out.println("<tr><th>Severity</th><th>Vulnerability</th><th>Ports and Service</th><th>Host List</th></tr>");
String[] tracker = new String[n];
for (int i = 0; i < tableA.length; i++)
{
ArrayList<String> hostSetIndex = new ArrayList<String>();
ArrayList<String> portSetIndex = new ArrayList<String>();
if (tableA[i][1] == null) break;
for (int y = 0; y < tableA.length; y++)
{
if (tableA[y][1] == null) break;
if (tableA[i][1].compareTo(tableA[y][1])==0)
{
if (hostSetIndex.contains(tableA[y][3])==false)
{
hostSetIndex.add(tableA[y][3]);
}
if (portSetIndex.contains(tableA[y][2])==false)
{
portSetIndex.add(tableA[y][2]);
}
}
}
for (int z = 0; z < tracker.length; z++)
{
if (tracker[z] == null) break;
if (tableA[i][1].compareTo(tracker[z])==0)
{
m = 1;
}
}
if (m == 0)
{
tracker[u] = tableA[i][1];
u++;
// NOTE: Add Sort To Output
for (int b = 0; b < hostSetIndex.size(); b++)
{
if (hostSet == "-")
{
hostSet = hostSetIndex.get(b);
} else {
hostSet = hostSet + ", " + hostSetIndex.get(b);
}
}
for (int b = 0; b < portSetIndex.size(); b++)
{
if (portSet == "-")
{
portSet = portSetIndex.get(b);
} else {
portSet = portSet + ", " + portSetIndex.get(b);
}
}
System.out.println("<tr><td>" + tableA[i][0] + "</td><td>" + tableA[i][1] + "</td><td>" + portSet + "</td><td>" + hostSet + "</td></tr>");
};
m = 0;
hostSet = "-";
portSet = "-";
}
System.out.println("</table>");
} catch (Exception e) {
e.printStackTrace();
}
}
}