Mario Ceballos
|
c4594f396f
|
added auxiliary module timbuktu_udp.rb and exploit module timbuktu_fileupload.rb
git-svn-id: file:///home/svn/framework3/trunk@7062 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-26 00:04:00 +00:00 |
Patrick Webster
|
b0c9e8b8e5
|
Added BigAnt 2.5 exploit module from Dr_IDE.
git-svn-id: file:///home/svn/framework3/trunk@7039 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-17 17:04:47 +00:00 |
James Lee
|
9ace8f33eb
|
OSVDB references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@7030 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 04:22:58 +00:00 |
Mario Ceballos
|
13f5e1c2e5
|
added exploit module symantec_altirisdeployment_downloadandinstall.rb
git-svn-id: file:///home/svn/framework3/trunk@7023 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 22:30:01 +00:00 |
HD Moore
|
71d644e72e
|
Fix the Payload->Space to match the new max size limit for the EXE generator. Thanks for catching it MC
git-svn-id: file:///home/svn/framework3/trunk@7022 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 21:23:11 +00:00 |
Patrick Webster
|
086d5daaba
|
Try again :)
git-svn-id: file:///home/svn/framework3/trunk@7020 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:20:10 +00:00 |
Patrick Webster
|
d1268286f0
|
Renamed to correct spelling based on the SAP service.
git-svn-id: file:///home/svn/framework3/trunk@7019 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:01:25 +00:00 |
Patrick Webster
|
63702412b0
|
Added exploit module sap_2005_licence from Jacopo Cervini.
git-svn-id: file:///home/svn/framework3/trunk@7018 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 14:59:34 +00:00 |
HD Moore
|
eeefc4dd27
|
Fix a typo
git-svn-id: file:///home/svn/framework3/trunk@7015 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 02:06:46 +00:00 |
HD Moore
|
56b2ab3f63
|
Fix the Space and mistyped StackAdjustment in the metaphish merge
git-svn-id: file:///home/svn/framework3/trunk@7014 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 00:55:13 +00:00 |
Mario Ceballos
|
c1aa1b5f22
|
updated targets list
git-svn-id: file:///home/svn/framework3/trunk@7006 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-05 14:54:22 +00:00 |
Mario Ceballos
|
cf0f690e4d
|
added exploit module safenet_ike_11.rb
git-svn-id: file:///home/svn/framework3/trunk@6996 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-02 22:04:35 +00:00 |
Stephen Fewer
|
1184f01742
|
Added Aki Immonen's target for Windows 2000 SP3, thanks Aki!
git-svn-id: file:///home/svn/framework3/trunk@6995 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-02 21:24:34 +00:00 |
HD Moore
|
41ab69c600
|
Updated return address from Stephen Fewer, should work for a wider range now
git-svn-id: file:///home/svn/framework3/trunk@6994 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 17:34:47 +00:00 |
HD Moore
|
251810685f
|
Fix the target patch
git-svn-id: file:///home/svn/framework3/trunk@6993 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 17:22:43 +00:00 |
HD Moore
|
ca22f6fa98
|
Updated patch and return address for better compatibility with more targets
git-svn-id: file:///home/svn/framework3/trunk@6992 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 16:38:52 +00:00 |
HD Moore
|
660ae9444b
|
Adds coverage for Kingcope's new IIS FTP exploit, this is a direct port with minimal changes
git-svn-id: file:///home/svn/framework3/trunk@6991 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 15:01:57 +00:00 |
Patrick Webster
|
161406e0a9
|
Added exploit fileformat module Altap Salamander PDB.
git-svn-id: file:///home/svn/framework3/trunk@6988 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-30 02:18:33 +00:00 |
Mario Ceballos
|
18ebd8f308
|
added exploit module ca_cab.rb
git-svn-id: file:///home/svn/framework3/trunk@6983 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 23:26:31 +00:00 |
HD Moore
|
ab6f955873
|
Remove the extra \ from the c:\ path to the cmd interpreter
git-svn-id: file:///home/svn/framework3/trunk@6981 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 19:51:36 +00:00 |
HD Moore
|
882ae5b9dd
|
Adds His0k4's ProFTP 2.9 FTP Client server banner overflow module
git-svn-id: file:///home/svn/framework3/trunk@6975 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-25 16:18:53 +00:00 |
HD Moore
|
474ba8860f
|
Merges in Colin's PDF infection code from Black Hat / Defcon
git-svn-id: file:///home/svn/framework3/trunk@6966 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-19 14:44:43 +00:00 |
druid
|
20102275ce
|
Updated references
git-svn-id: file:///home/svn/framework3/trunk@6956 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-13 22:35:42 +00:00 |
druid
|
0a29ce88c0
|
Added MSB reference
git-svn-id: file:///home/svn/framework3/trunk@6955 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-13 19:25:02 +00:00 |
Patrick Webster
|
91faadd782
|
Added juniper_sslvpn_ive_setupdll ActiveX exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6921 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-30 15:47:23 +00:00 |
HD Moore
|
876a80f601
|
Updated osvdb references from Steve Tornio, updated capture/eth_spoof modules
git-svn-id: file:///home/svn/framework3/trunk@6907 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-27 14:05:23 +00:00 |
kris
|
d3e65b3363
|
svn:keywords run
git-svn-id: file:///home/svn/framework3/trunk@6876 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 02:55:51 +00:00 |
James Lee
|
739207bf4a
|
merge browser_autopwn back into trunk. This changes the database schema slightly, so make sure to db_destroy and db_create before using the database features.
git-svn-id: file:///home/svn/framework3/trunk@6873 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 20:14:35 +00:00 |
James Lee
|
750a432fd0
|
fix calls to new to_win32pe with correct number of arguments
git-svn-id: file:///home/svn/framework3/trunk@6872 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 19:23:21 +00:00 |
HD Moore
|
4c4a8a764c
|
Let the XP SP0/SP1 and 2000 targets automatically run
git-svn-id: file:///home/svn/framework3/trunk@6865 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 12:59:08 +00:00 |
Mario Ceballos
|
4691f2b0e5
|
added exploit module netidentity_xtierrpcpipe.rb
git-svn-id: file:///home/svn/framework3/trunk@6850 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-21 01:04:48 +00:00 |
James Lee
|
529ded22ae
|
reverting last commit; somebody didn't cross their fingers
git-svn-id: file:///home/svn/framework3/trunk@6847 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-19 20:48:47 +00:00 |
James Lee
|
c3dc1ecb55
|
reintegrate browser_autopwn into trunk; cross your fingers and hope this works
git-svn-id: file:///home/svn/framework3/trunk@6846 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-19 17:27:36 +00:00 |
HD Moore
|
f8c2a203fd
|
OSVDB references updates from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6812 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-16 16:02:24 +00:00 |
Patrick Webster
|
f151ecc0ca
|
Added mirc_privmsg_server exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6806 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-15 11:44:55 +00:00 |
Mario Ceballos
|
6005ac7c3f
|
added exploit module tns_service_name.rb. updated ora_ntlm_stealer.rb to use the new mixin.
git-svn-id: file:///home/svn/framework3/trunk@6804 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-15 03:50:45 +00:00 |
HD Moore
|
b018df89da
|
Some minor tweaks, looks like this module doesnt play nice with the new JS encrypter
git-svn-id: file:///home/svn/framework3/trunk@6799 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 11:59:33 +00:00 |
HD Moore
|
b2a0f8adf5
|
Comment out references for now
git-svn-id: file:///home/svn/framework3/trunk@6795 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 02:42:52 +00:00 |
HD Moore
|
298ba64734
|
Fix the references section
git-svn-id: file:///home/svn/framework3/trunk@6794 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 00:25:26 +00:00 |
HD Moore
|
306841cc69
|
Adds coverage for the new OWC ActiveX control exploit
git-svn-id: file:///home/svn/framework3/trunk@6792 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 23:39:42 +00:00 |
HD Moore
|
5fb316b383
|
Integrates L4teral's JS encoder/encrypter
git-svn-id: file:///home/svn/framework3/trunk@6784 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 22:17:11 +00:00 |
Mario Ceballos
|
055c58b82e
|
rename module to make room for new one.
git-svn-id: file:///home/svn/framework3/trunk@6775 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 03:50:18 +00:00 |
druid
|
c846f02c79
|
Final commit of working CLSIDs
git-svn-id: file:///home/svn/framework3/trunk@6755 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 22:15:59 +00:00 |
druid
|
7a7b2df5a5
|
Updated list of working ClassIDs
git-svn-id: file:///home/svn/framework3/trunk@6754 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 21:34:13 +00:00 |
druid
|
b9e7e0b902
|
Removed some CLSIDs that didn't work
git-svn-id: file:///home/svn/framework3/trunk@6753 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 21:25:23 +00:00 |
druid
|
02f7d6b586
|
Exploit now uses a random ClassID from the list provided by the Microsoft Advisory rather than a static one (also configurable via an advanced option).
git-svn-id: file:///home/svn/framework3/trunk@6751 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 19:47:44 +00:00 |
HD Moore
|
a54b9a06ef
|
Exploit module for the new MS Video ActiveX flaw from Trancer. See more at http://www.rec-sec.com/2009/07/06/ms-directshow-msvidctl-exploit/
git-svn-id: file:///home/svn/framework3/trunk@6750 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-07 11:11:46 +00:00 |
Patrick Webster
|
a4e0c88a1b
|
Added MDaemon WorldClient Form2Raw.cgi exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6736 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-03 01:26:21 +00:00 |
Mario Ceballos
|
f90d4123ab
|
added exploit module bopup_comm.rb
git-svn-id: file:///home/svn/framework3/trunk@6721 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-27 14:31:29 +00:00 |
HD Moore
|
d0fe4e8610
|
Remove overzealous change for 1.9.1 compat
git-svn-id: file:///home/svn/framework3/trunk@6697 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-22 13:22:50 +00:00 |