From 675dfe4e14d23485416c9dec370a5436865e42e4 Mon Sep 17 00:00:00 2001 From: Tod Beardsley Date: Mon, 21 May 2012 11:27:24 -0500 Subject: [PATCH] Don't keep the weblogi return codes secret --- modules/exploits/windows/http/bea_weblogic_post_bof.rb | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/modules/exploits/windows/http/bea_weblogic_post_bof.rb b/modules/exploits/windows/http/bea_weblogic_post_bof.rb index a93ac8562e..128c522cb0 100644 --- a/modules/exploits/windows/http/bea_weblogic_post_bof.rb +++ b/modules/exploits/windows/http/bea_weblogic_post_bof.rb @@ -88,6 +88,7 @@ class Metasploit3 < Msf::Exploit::Remote def check fingerprint = fingerprint_mod_wl + print_status "#{rhost}:#{rport} - #{fingerprint}" case fingerprint when /Version found/ @@ -176,7 +177,7 @@ class Metasploit3 < Msf::Exploit::Remote if build_date <= Date.parse("Jul 28 2008") return "BEA WebLogic connector vulnerable" else - return "BEA WebLogic connector no vulnerable" + return "BEA WebLogic connector not vulnerable" end else return "BEA WebLogic connector undefined"