HD Moore
|
f1afbacb2a
|
Cron'd
git-svn-id: file:///home/svn/framework3/trunk@13485 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-08-04 17:36:01 +00:00 |
Wei Chen
|
f47a2c7565
|
Format dictatorship round 2: Fix author e-mail format for all exploit modules
git-svn-id: file:///home/svn/framework3/trunk@13297 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-22 20:17:58 +00:00 |
Wei Chen
|
d13654740a
|
Update some jboss modules' metadata associated with CVE-2010-0738
git-svn-id: file:///home/svn/framework3/trunk@13204 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-18 05:18:25 +00:00 |
James Lee
|
c412a836ed
|
add VERBOSE option to all modules and vprint_* methods to use it
git-svn-id: file:///home/svn/framework3/trunk@13183 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-15 15:33:35 +00:00 |
HD Moore
|
eea05fcaaa
|
Correct the parent class name
git-svn-id: file:///home/svn/framework3/trunk@12930 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-12 19:31:38 +00:00 |
HD Moore
|
7f3e2d182d
|
Fix Axis2 to inherit from the correct class, prevent a stack trace when a non-Remote exploit has the cleanup method called.
git-svn-id: file:///home/svn/framework3/trunk@12928 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-12 18:32:27 +00:00 |
David Rude
|
a8b6c43636
|
reverting the disclosure dates for now need to clean up the patch
git-svn-id: file:///home/svn/framework3/trunk@12540 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-04 20:43:19 +00:00 |
David Rude
|
3b7ea08f6a
|
Fixes a ton of Disclosure Date discrepencies in various modules, thanks a ton to Michael Baker for spending the time to ensure accuracy
git-svn-id: file:///home/svn/framework3/trunk@12539 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-04 19:17:31 +00:00 |
David Rude
|
3b5cf3826a
|
Added TheLightCosines OpenSSL ChangeCipherSpec DoS aux module
git-svn-id: file:///home/svn/framework3/trunk@12538 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-04 19:08:28 +00:00 |
Steve Tornio
|
319b4993a4
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12397 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-21 19:38:42 +00:00 |
David Rude
|
0f9a232025
|
Added Spreecommerce Remote Code Execution exploit module - thanks joernchen
git-svn-id: file:///home/svn/framework3/trunk@12392 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-21 16:57:17 +00:00 |
Joshua Drake
|
f0673cb1ac
|
Tweak to work with FreeBSD, thx for the patch!
git-svn-id: file:///home/svn/framework3/trunk@12224 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-03 17:40:45 +00:00 |
David Rude
|
c5ce597483
|
removing coldfusion until some general code fixes can be applied
git-svn-id: file:///home/svn/framework3/trunk@11995 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-03-16 21:41:47 +00:00 |
Mario Ceballos
|
dfd2df6b47
|
puts this in the appropiate place
git-svn-id: file:///home/svn/framework3/trunk@11987 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-03-16 10:22:07 +00:00 |
Joshua Drake
|
1604b5616f
|
apply some more changes from Konrads
git-svn-id: file:///home/svn/framework3/trunk@11533 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-01-10 14:34:24 +00:00 |
Joshua Drake
|
9ef757bf17
|
Fixes #3387, add the PACKAGE option to allow 3.2
git-svn-id: file:///home/svn/framework3/trunk@11518 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-01-08 04:11:01 +00:00 |
James Lee
|
dd6afdc74c
|
make these titles a little clearer
git-svn-id: file:///home/svn/framework3/trunk@11330 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-12-14 17:26:44 +00:00 |
Joshua Drake
|
26a9fe6fc7
|
add some missing CVE references
git-svn-id: file:///home/svn/framework3/trunk@11180 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-30 20:19:18 +00:00 |
Joshua Drake
|
d5835fe7b0
|
remove commented out REST portion
git-svn-id: file:///home/svn/framework3/trunk@11179 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-30 19:11:42 +00:00 |
Joshua Drake
|
98e8ec4cc9
|
add REST version of axis2 deployer
git-svn-id: file:///home/svn/framework3/trunk@11178 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-30 18:17:33 +00:00 |
Joshua Drake
|
e9faf75503
|
fix some more titles with periods
git-svn-id: file:///home/svn/framework3/trunk@11127 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-24 19:35:38 +00:00 |
Joshua Drake
|
2fe78ec685
|
double grammar fail
git-svn-id: file:///home/svn/framework3/trunk@11053 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-16 20:23:11 +00:00 |
Joshua Drake
|
f4d2af3e73
|
fix typo
git-svn-id: file:///home/svn/framework3/trunk@11052 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-16 20:17:25 +00:00 |
Joshua Drake
|
25611afb6c
|
add sap businessobject modules from jabra, woot!
git-svn-id: file:///home/svn/framework3/trunk@11046 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-15 05:12:48 +00:00 |
Joshua Drake
|
4a5bee45c5
|
style compliance fixes
git-svn-id: file:///home/svn/framework3/trunk@11015 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-12 23:14:46 +00:00 |
Mario Ceballos
|
2aca76ef66
|
added exploit module freenas_exec_raw.rb. php/meterpreter ftw.
git-svn-id: file:///home/svn/framework3/trunk@11014 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-12 23:02:28 +00:00 |
James Lee
|
326dc42bca
|
add EncodedPayload#encoded_exe, encoded_jar, and encoded_war. simplifies exploits that need java and native payloads. see #406 and #3009
git-svn-id: file:///home/svn/framework3/trunk@10999 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-11 23:01:35 +00:00 |
Joshua Drake
|
1f235a8c9b
|
remove 64-bit targets since we dont have an x86_64 linux exe generator
git-svn-id: file:///home/svn/framework3/trunk@10833 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-27 17:21:54 +00:00 |
Joshua Drake
|
be841a4810
|
check for failed serverinfo result
git-svn-id: file:///home/svn/framework3/trunk@10788 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-22 21:32:12 +00:00 |
James Lee
|
3b2c43fac4
|
get rid of the redundant second java target
git-svn-id: file:///home/svn/framework3/trunk@10785 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-22 20:07:18 +00:00 |
James Lee
|
f33d7cc670
|
revamp java payloads and make shells work with tomcat_mgr_deploy. tested java_trusted_chain and java_tester to verify that this doesn't break other java payload usage. see #3009 and #2973, meterpreter doesn't work yet, so not marking resolved.
git-svn-id: file:///home/svn/framework3/trunk@10781 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-22 10:19:51 +00:00 |
Joshua Drake
|
c6f1fa716d
|
add a java target, fixes #2973
git-svn-id: file:///home/svn/framework3/trunk@10755 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 22:36:59 +00:00 |
Joshua Drake
|
771ea5862c
|
fix typo
git-svn-id: file:///home/svn/framework3/trunk@10754 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 22:24:33 +00:00 |
Joshua Drake
|
1935f2007f
|
fix exe generation for auto-targetting
git-svn-id: file:///home/svn/framework3/trunk@10753 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 22:21:19 +00:00 |
Joshua Drake
|
042e71c357
|
add ports/refs for ZDI-10-214
git-svn-id: file:///home/svn/framework3/trunk@10747 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 14:28:52 +00:00 |
Joshua Drake
|
b49e81300a
|
fix auto-target exe generation
git-svn-id: file:///home/svn/framework3/trunk@10688 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-14 21:26:05 +00:00 |
Joshua Drake
|
279c604015
|
missed a couple exe generater includes
git-svn-id: file:///home/svn/framework3/trunk@10504 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-28 16:19:50 +00:00 |
Joshua Drake
|
bd1eeb3722
|
rework to_jsp_war a bit, fix uses, default msfencode -t war to x86/win32
git-svn-id: file:///home/svn/framework3/trunk@10397 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-20 15:59:46 +00:00 |
Joshua Drake
|
4590844871
|
tons of indentation fixes, some other style tweaks
git-svn-id: file:///home/svn/framework3/trunk@10394 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-20 08:06:27 +00:00 |
Joshua Drake
|
d540818f01
|
split http exploit mixin into http/server and http/client
git-svn-id: file:///home/svn/framework3/trunk@9971 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-08-07 06:59:16 +00:00 |
Joshua Drake
|
2f384cde82
|
add alias for calling Msf::Exploit regenerate_payload explicitly -- fixes #2312
git-svn-id: file:///home/svn/framework3/trunk@9950 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-08-03 15:14:34 +00:00 |
Joshua Drake
|
16ff17c9d1
|
add more http fingerprints -- thx mc
git-svn-id: file:///home/svn/framework3/trunk@9797 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-12 23:25:31 +00:00 |
Joshua Drake
|
663b863b6d
|
http fingerprint checking update
git-svn-id: file:///home/svn/framework3/trunk@9719 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 17:38:59 +00:00 |
Joshua Drake
|
a3d901a6b9
|
various minor fixes, some added fingerprinting
git-svn-id: file:///home/svn/framework3/trunk@9671 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-03 06:21:31 +00:00 |
Joshua Drake
|
7d945ed9dc
|
add lots of disclosure dates from OSVDB
git-svn-id: file:///home/svn/framework3/trunk@9669 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-03 03:13:45 +00:00 |
Joshua Drake
|
0882838491
|
ensure binary mode when opening files, whitespace fixes
git-svn-id: file:///home/svn/framework3/trunk@9653 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-01 23:33:07 +00:00 |
Joshua Drake
|
93b09648c7
|
add additional CVE reference, cleanup references
git-svn-id: file:///home/svn/framework3/trunk@9642 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-01 19:42:11 +00:00 |
Joshua Drake
|
12fbdcd878
|
add http_fingerprint calls to modules that use various headers
git-svn-id: file:///home/svn/framework3/trunk@9627 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-25 20:53:12 +00:00 |
Joshua Drake
|
48994d234a
|
oops, remove java from platform list
git-svn-id: file:///home/svn/framework3/trunk@9609 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-24 16:38:24 +00:00 |
Joshua Drake
|
099b90b0d6
|
another update for jboss stuff, thanks Patrick!
git-svn-id: file:///home/svn/framework3/trunk@9596 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-23 22:25:03 +00:00 |
Joshua Drake
|
58cbf5d6ad
|
oops, fixed app_base mistake
git-svn-id: file:///home/svn/framework3/trunk@9586 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-22 23:10:30 +00:00 |
Mario Ceballos
|
9780efabdd
|
missed Version
git-svn-id: file:///home/svn/framework3/trunk@9578 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-22 01:24:52 +00:00 |
Mario Ceballos
|
ccece11b9b
|
changed from the orignal method, thanks patrick.
git-svn-id: file:///home/svn/framework3/trunk@9577 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-22 01:08:02 +00:00 |
Joshua Drake
|
752905a777
|
style compliance fixes
git-svn-id: file:///home/svn/framework3/trunk@9571 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-21 16:53:52 +00:00 |
Joshua Drake
|
19742afb38
|
use pack instead of Base64
git-svn-id: file:///home/svn/framework3/trunk@9569 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-21 16:45:26 +00:00 |
Joshua Drake
|
4ceb936533
|
some jboss updates, much thanks to Patrick Hof
git-svn-id: file:///home/svn/framework3/trunk@9568 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-21 16:26:14 +00:00 |
Joshua Drake
|
698da3bdea
|
add CVE for cognos express
git-svn-id: file:///home/svn/framework3/trunk@9502 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-06-12 09:37:21 +00:00 |
Joshua Drake
|
711e08b5e9
|
make sure to use correct verbs, thanks mc!
git-svn-id: file:///home/svn/framework3/trunk@9285 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-11 16:20:46 +00:00 |
Joshua Drake
|
7f758d5a02
|
add VERB option to enable exploiting cve-2010-0738
git-svn-id: file:///home/svn/framework3/trunk@9282 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-11 09:14:36 +00:00 |
Joshua Drake
|
d7c99b107c
|
RE-fix and add svnkeywords, MC!!!
git-svn-id: file:///home/svn/framework3/trunk@9261 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-09 17:30:05 +00:00 |
Mario Ceballos
|
d33dc27e26
|
updated.. thanks jmg.
git-svn-id: file:///home/svn/framework3/trunk@9256 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-09 12:54:16 +00:00 |
Steve Tornio
|
a47f7dcb2e
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@9251 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-08 16:46:49 +00:00 |
Joshua Drake
|
d296e0cdc3
|
minor cleanups
git-svn-id: file:///home/svn/framework3/trunk@9245 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-07 22:28:21 +00:00 |
Mario Ceballos
|
579d35035b
|
added exploit module for cve-2006-5750
git-svn-id: file:///home/svn/framework3/trunk@9244 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-07 22:21:44 +00:00 |
Joshua Drake
|
61402c4b55
|
add to description
git-svn-id: file:///home/svn/framework3/trunk@9202 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-02 21:04:56 +00:00 |
Joshua Drake
|
ff46c5d867
|
add exploit module for cve-2010-0361 on windows
git-svn-id: file:///home/svn/framework3/trunk@9201 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-05-02 20:52:14 +00:00 |
Joshua Drake
|
0ea6eca4bc
|
big module whitespace/formatting cleanup pass
git-svn-id: file:///home/svn/framework3/trunk@9179 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-04-30 08:40:19 +00:00 |
Joshua Drake
|
22529ae81b
|
add USERNAME/PASSWORD options
git-svn-id: file:///home/svn/framework3/trunk@9177 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-04-30 06:30:59 +00:00 |
Joshua Drake
|
1a47c436d3
|
support amd64 arch
git-svn-id: file:///home/svn/framework3/trunk@9025 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-04-06 04:08:39 +00:00 |
HD Moore
|
7af2fdf42e
|
Remove silly cases of print_good
git-svn-id: file:///home/svn/framework3/trunk@9021 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-04-05 23:34:10 +00:00 |
Joshua Drake
|
516a6f47e5
|
move USERNAME/PASSWORD setting to exploit instead of auto_target so manual targets work - fixes #1416
git-svn-id: file:///home/svn/framework3/trunk@8967 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-03-31 22:29:47 +00:00 |
Joshua Drake
|
b8b11338b1
|
add linux x86/x86_64 support for tomcat manger deploy, see #1016
git-svn-id: file:///home/svn/framework3/trunk@8853 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-03-19 02:13:02 +00:00 |
Joshua Drake
|
3b9524697f
|
add verbose option
git-svn-id: file:///home/svn/framework3/trunk@8761 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-03-10 05:55:47 +00:00 |
Joshua Drake
|
35c4a1d123
|
handle missing targets more gracefully, stub out linux and x86_64 support detection
git-svn-id: file:///home/svn/framework3/trunk@8729 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-03-05 17:35:18 +00:00 |
Joshua Drake
|
e80df81350
|
correct the CVE reference
git-svn-id: file:///home/svn/framework3/trunk@8678 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-03-01 19:47:13 +00:00 |
James Lee
|
3b59bc7cfc
|
use the same option names for user/pass
git-svn-id: file:///home/svn/framework3/trunk@8674 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-02-26 22:14:58 +00:00 |
Joshua Drake
|
541a409f44
|
remove app_name variable
git-svn-id: file:///home/svn/framework3/trunk@8619 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-02-24 16:53:55 +00:00 |
Joshua Drake
|
865969e059
|
whitespace adjustments - finally closes #773
git-svn-id: file:///home/svn/framework3/trunk@8575 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-02-21 01:44:34 +00:00 |
Joshua Drake
|
32bf50c627
|
add exploit module to get code exec from jboss.system:MainDeployer access
git-svn-id: file:///home/svn/framework3/trunk@8574 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-02-21 01:41:24 +00:00 |
Joshua Drake
|
8446a0c305
|
add auto-targeting to tomcat_mgr_deploy, fixes #887
git-svn-id: file:///home/svn/framework3/trunk@8564 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-02-20 01:14:39 +00:00 |
Joshua Drake
|
2e77c76824
|
add exploit module to get code exec on a tomcat manager instance, closes #772
git-svn-id: file:///home/svn/framework3/trunk@8552 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-02-18 18:18:43 +00:00 |