HD Moore
|
7dbb56b38b
|
No longer default a target for XP systems; some obscure builds of XP Embedded SP1 have a different offset and not good way to differentiate
git-svn-id: file:///home/svn/framework3/trunk@13214 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-19 01:40:26 +00:00 |
Wei Chen
|
3ca9b51984
|
oops, a little mistake in the description
git-svn-id: file:///home/svn/framework3/trunk@13212 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-18 20:46:08 +00:00 |
Wei Chen
|
821e9dd68b
|
Updated metadata, merged code with #4923. Thx Joff.
git-svn-id: file:///home/svn/framework3/trunk@13211 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-18 20:39:27 +00:00 |
HD Moore
|
764bb36f44
|
Wait a little longer for a session (5 seconds)
git-svn-id: file:///home/svn/framework3/trunk@13208 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-18 16:05:51 +00:00 |
HD Moore
|
8887fe86b8
|
Either the offset or the env page moves around for this exploit on some non-english systems, do not default the target for 2003 SP0
git-svn-id: file:///home/svn/framework3/trunk@13206 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-18 14:59:55 +00:00 |
Wei Chen
|
2eeffc39fc
|
Add Iconics GENESIS32 GenBroker exploit by lincoln and corelanc0d3r
git-svn-id: file:///home/svn/framework3/trunk@13197 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-17 15:01:46 +00:00 |
Wei Chen
|
681563adc9
|
Fix that extra tab in the description
git-svn-id: file:///home/svn/framework3/trunk@13194 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-16 05:21:20 +00:00 |
Wei Chen
|
2e93ba06ba
|
Add HP NNM ToolBar.exe exploit aganist the OvOSLocale cookie parameter
git-svn-id: file:///home/svn/framework3/trunk@13193 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-16 05:14:33 +00:00 |
Wei Chen
|
86b40e894b
|
Make room for another exploit against ToolBar.exe
git-svn-id: file:///home/svn/framework3/trunk@13192 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-16 04:45:21 +00:00 |
James Lee
|
c412a836ed
|
add VERBOSE option to all modules and vprint_* methods to use it
git-svn-id: file:///home/svn/framework3/trunk@13183 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-15 15:33:35 +00:00 |
Steve Tornio
|
9278b0a5f5
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@13152 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-11 06:59:00 +00:00 |
Wei Chen
|
94aea207d3
|
Remove extra tabs and spaces
git-svn-id: file:///home/svn/framework3/trunk@13148 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 21:10:45 +00:00 |
Wei Chen
|
9892eb39eb
|
Syntax fix
git-svn-id: file:///home/svn/framework3/trunk@13147 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 20:50:52 +00:00 |
Wei Chen
|
32a7eb0000
|
svn propset
git-svn-id: file:///home/svn/framework3/trunk@13146 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 19:19:00 +00:00 |
David Rude
|
7958516549
|
Adds Xeros Firefox nstreerange exploit
git-svn-id: file:///home/svn/framework3/trunk@13143 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 17:12:53 +00:00 |
Wei Chen
|
5b69b52ec4
|
"InitialAutoRunScript" is more like it
git-svn-id: file:///home/svn/framework3/trunk@13142 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 07:28:12 +00:00 |
Wei Chen
|
6448daf571
|
MS10-018, y u no InitialAutoRunScript
git-svn-id: file:///home/svn/framework3/trunk@13141 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-10 07:02:38 +00:00 |
Wei Chen
|
15f82402af
|
I changed my mind. The ATTEMPTS options is required.
git-svn-id: file:///home/svn/framework3/trunk@13137 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-09 04:10:52 +00:00 |
Wei Chen
|
1246fd5731
|
Added Blue Coat Authentication Authorization Agent exploit
git-svn-id: file:///home/svn/framework3/trunk@13134 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-09 01:40:29 +00:00 |
Steve Tornio
|
94640b6bc4
|
add osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@13115 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-07 11:54:54 +00:00 |
Wei Chen
|
47e6c4a89f
|
Added #4870 - MicroP .mppl buffer overflow exploit
git-svn-id: file:///home/svn/framework3/trunk@13114 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-07 06:29:37 +00:00 |
HD Moore
|
78f2525fdc
|
Fixes #4879 by adding a new target from bperry
git-svn-id: file:///home/svn/framework3/trunk@13110 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-07 03:33:04 +00:00 |
Wei Chen
|
1058948419
|
Updated ROP, no more hardcoded ntdll addresses
git-svn-id: file:///home/svn/framework3/trunk@13106 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-06 07:22:24 +00:00 |
Wei Chen
|
7589f8d2f1
|
Updated target name that works against multiple systems (thx corelanc0d3r)
git-svn-id: file:///home/svn/framework3/trunk@13105 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-06 01:59:24 +00:00 |
Wei Chen
|
1e4dfaf6de
|
Change author name for dookie
git-svn-id: file:///home/svn/framework3/trunk@13096 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-04 22:33:47 +00:00 |
Wei Chen
|
2f6b89516a
|
Added HP Data Protector omniinet buffer overflow with opcode 20
git-svn-id: file:///home/svn/framework3/trunk@13092 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-04 17:02:40 +00:00 |
HD Moore
|
db6b8c3545
|
Probably time to fess up :)
git-svn-id: file:///home/svn/framework3/trunk@13088 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-02 01:09:46 +00:00 |
Wei Chen
|
dbd04d754a
|
Change to a better P/P/R, tested on 4 different machines. Thx fdiskyou.
git-svn-id: file:///home/svn/framework3/trunk@13081 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-01 22:26:12 +00:00 |
Mario Ceballos
|
b6e1c6a967
|
add exploit module hp_omniinet_3.rb
git-svn-id: file:///home/svn/framework3/trunk@13080 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-07-01 17:07:38 +00:00 |
Wei Chen
|
fc33b1d20e
|
'\x00' isn't the same as "\x00"
git-svn-id: file:///home/svn/framework3/trunk@13051 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-28 19:45:51 +00:00 |
Wei Chen
|
73dc5c605b
|
Change ranking. Because looks like it works better than "average"
git-svn-id: file:///home/svn/framework3/trunk@13042 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-27 18:00:12 +00:00 |
Wei Chen
|
e6995b4912
|
Added ZDI-11-023 Citrix Provisioning Services bof exploit (Feature #4798)
git-svn-id: file:///home/svn/framework3/trunk@13041 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-27 17:54:18 +00:00 |
Wei Chen
|
1b25cf3c43
|
Using SEH instead of egghunter. Verified again on Win2k3. thx to MC.
git-svn-id: file:///home/svn/framework3/trunk@13036 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-26 19:28:14 +00:00 |
Wei Chen
|
6325515ca7
|
Minor name change
git-svn-id: file:///home/svn/framework3/trunk@13034 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-26 16:09:53 +00:00 |
Wei Chen
|
07f415f4e0
|
Forgot to switch back to random paddings
git-svn-id: file:///home/svn/framework3/trunk@13033 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-26 16:06:39 +00:00 |
Wei Chen
|
f0e6159a35
|
Minor name change for the exploit
git-svn-id: file:///home/svn/framework3/trunk@13031 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-26 06:01:21 +00:00 |
Wei Chen
|
13b2209f3d
|
Added Microsoft Visio DXF File Buffer Overflow Exploit by Juan
git-svn-id: file:///home/svn/framework3/trunk@13030 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-26 05:59:37 +00:00 |
Wei Chen
|
0cf51f8d5a
|
Exploit name change. Also, this thing doesn't use seh.
git-svn-id: file:///home/svn/framework3/trunk@13026 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-25 14:25:45 +00:00 |
Steve Tornio
|
27eb48f650
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@13025 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-25 11:27:55 +00:00 |
Wei Chen
|
f16f850fc6
|
Added Siemens FactoryLink 8 csservice.exe (port 7580)
git-svn-id: file:///home/svn/framework3/trunk@13019 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-25 00:54:18 +00:00 |
David Rude
|
37b7345fea
|
Adds Ranking and Fileformat version of the Lotus Notes LZH Exploit
git-svn-id: file:///home/svn/framework3/trunk@13015 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-23 15:43:54 +00:00 |
Steve Tornio
|
59943cb367
|
add osvdb and cve refs
git-svn-id: file:///home/svn/framework3/trunk@13014 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-23 12:05:09 +00:00 |
David Rude
|
7b5860d0ab
|
Fix a bug if the RHOST length is 15 or longer
git-svn-id: file:///home/svn/framework3/trunk@13013 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-23 09:58:50 +00:00 |
David Rude
|
df8bf68722
|
Adds Lotus Notes .lzh Autonomy Keyview Exploit
git-svn-id: file:///home/svn/framework3/trunk@13012 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-23 09:51:16 +00:00 |
Wei Chen
|
1223275330
|
Change ranking for now until we have a better solution for SP3
git-svn-id: file:///home/svn/framework3/trunk@13009 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-23 01:04:29 +00:00 |
Wei Chen
|
bd62c13fb0
|
Added RealWin SCADA Server DATAC Login Buffer Overflow (Feature #4787))
git-svn-id: file:///home/svn/framework3/trunk@13007 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-22 22:36:55 +00:00 |
James Lee
|
57cf0b04a7
|
stack overflow != stack buffer overflow
git-svn-id: file:///home/svn/framework3/trunk@13001 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 23:27:16 +00:00 |
Steve Tornio
|
465bc8ce88
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@13000 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 22:42:53 +00:00 |
Mario Ceballos
|
a5a1f1587f
|
add another scada module. winlog_runtime.rb
git-svn-id: file:///home/svn/framework3/trunk@12999 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 21:48:30 +00:00 |
Wei Chen
|
0400a72ab0
|
RCA, description update, and some text randomness
git-svn-id: file:///home/svn/framework3/trunk@12998 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 21:08:57 +00:00 |
Joshua Drake
|
69963a45ab
|
Fixes #4752 - Auto-detect the windows directory and use it for subsequent requests
git-svn-id: file:///home/svn/framework3/trunk@12997 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 18:55:28 +00:00 |
Steve Tornio
|
03464a168e
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12996 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 18:02:35 +00:00 |
David Rude
|
d796f523a6
|
Adds FactorLink vrn.exe exploit from hal
git-svn-id: file:///home/svn/framework3/trunk@12995 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 13:20:18 +00:00 |
Wei Chen
|
fdbc038bd0
|
Add BlackIce Cover Page ActiveX downloadimagefileurl exploit
git-svn-id: file:///home/svn/framework3/trunk@12992 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-21 02:51:39 +00:00 |
Steve Tornio
|
8ee3bf7f54
|
add cve, osvdb and bugtraq id.
git-svn-id: file:///home/svn/framework3/trunk@12978 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-20 11:07:22 +00:00 |
HD Moore
|
3831e49455
|
See #4506 for Macro handling
git-svn-id: file:///home/svn/framework3/trunk@12977 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-20 07:23:16 +00:00 |
Wei Chen
|
0b30256203
|
Add licensing
git-svn-id: file:///home/svn/framework3/trunk@12975 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-20 04:01:47 +00:00 |
Wei Chen
|
eff703b3ad
|
Add SCADA Realwin On_FC_CONNECT_FCS_a_FILE buffer overflow
git-svn-id: file:///home/svn/framework3/trunk@12974 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-20 00:37:13 +00:00 |
Steve Tornio
|
650762517f
|
update CVE and OSVDB to match what the author said
git-svn-id: file:///home/svn/framework3/trunk@12964 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-17 17:35:57 +00:00 |
Steve Tornio
|
7c47b48f5b
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12962 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-17 01:56:20 +00:00 |
Wei Chen
|
23cc89482b
|
CVE correction, thanks Kurt.
git-svn-id: file:///home/svn/framework3/trunk@12961 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-17 00:56:11 +00:00 |
Wei Chen
|
eae350b88b
|
CVE-2011-1260 seems to be the right one
git-svn-id: file:///home/svn/framework3/trunk@12959 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-16 22:27:10 +00:00 |
Wei Chen
|
0a04835138
|
Added MS11-050 by d0c_s4vage
git-svn-id: file:///home/svn/framework3/trunk@12956 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-16 21:19:12 +00:00 |
HD Moore
|
d11e1f3294
|
Make all keywords consistent for modules.
git-svn-id: file:///home/svn/framework3/trunk@12936 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-13 03:38:31 +00:00 |
David Rude
|
04d280fdd0
|
minor fixes
git-svn-id: file:///home/svn/framework3/trunk@12925 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-12 00:04:55 +00:00 |
David Rude
|
ee7454c5e6
|
Added IBM Tivoli Endpoint Manager HTTP POST query buffer overflow exploit
git-svn-id: file:///home/svn/framework3/trunk@12922 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-11 23:48:18 +00:00 |
Steve Tornio
|
579d823070
|
add osvdb and cve refs
git-svn-id: file:///home/svn/framework3/trunk@12893 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-09 20:44:52 +00:00 |
David Rude
|
247251ac07
|
Remove references to OUTPUTPATH options, unless files are created using a different method
git-svn-id: file:///home/svn/framework3/trunk@12892 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-09 19:51:56 +00:00 |
Wei Chen
|
24bb7c3d8d
|
7-Technologies IGSS v9.0 Rename command buffer overflow
git-svn-id: file:///home/svn/framework3/trunk@12886 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-09 06:04:04 +00:00 |
David Rude
|
e2820918ad
|
adds Windows XP SP3 target and updates the reference link
git-svn-id: file:///home/svn/framework3/trunk@12873 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 20:29:02 +00:00 |
David Rude
|
b9e398c706
|
adds support for SSL
git-svn-id: file:///home/svn/framework3/trunk@12872 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 20:15:51 +00:00 |
David Rude
|
31a659e55a
|
Fixed this up to use the new JS obfuscation hotness thanks to egyp7s rkelly fu!
git-svn-id: file:///home/svn/framework3/trunk@12871 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 19:49:33 +00:00 |
Steve Tornio
|
377a18030a
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12869 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 19:06:18 +00:00 |
David Rude
|
3d7715ce60
|
Added Cisco AnyConnect VPN Client ActiveX download and execute exploit
git-svn-id: file:///home/svn/framework3/trunk@12868 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 18:52:26 +00:00 |
Wei Chen
|
2e861a2fa8
|
Added CVE
git-svn-id: file:///home/svn/framework3/trunk@12865 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-06 02:35:40 +00:00 |
James Lee
|
bee19278d7
|
add a new javascript obfuscation engine using rkelly for parsing. use it in browser_autopwn and ms10_018_ie_behaviors. see #1003
git-svn-id: file:///home/svn/framework3/trunk@12839 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-03 00:36:26 +00:00 |
Steve Tornio
|
6890ec5610
|
add cve and osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@12816 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 12:24:25 +00:00 |
David Rude
|
bfdb3a2a36
|
Added GoldenFTP exploit
git-svn-id: file:///home/svn/framework3/trunk@12812 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 01:10:22 +00:00 |
Steve Tornio
|
f43368ebe4
|
add osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@12779 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-31 14:33:19 +00:00 |
Wei Chen
|
396e476a03
|
Updated description, documented packet header a bit
git-svn-id: file:///home/svn/framework3/trunk@12774 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 21:17:35 +00:00 |
Wei Chen
|
b950219b0d
|
Fix typo
git-svn-id: file:///home/svn/framework3/trunk@12773 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 21:06:56 +00:00 |
Wei Chen
|
4d044ee592
|
Added 7-Technologies IGSS 9.0 Write File / EXE packet handling exploit
git-svn-id: file:///home/svn/framework3/trunk@12772 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 21:00:49 +00:00 |
Jonathan Cran
|
ef7a7adc1e
|
escape slashes, thanks aushack
git-svn-id: file:///home/svn/framework3/trunk@12738 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-27 06:14:52 +00:00 |
Steve Tornio
|
782b1c6dd6
|
add stratsec ref, update disclosure to match public timeline
git-svn-id: file:///home/svn/framework3/trunk@12716 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 13:57:12 +00:00 |
Wei Chen
|
c1233db428
|
ugh! It's visiwavereport.exe, not visiwave.exe.
git-svn-id: file:///home/svn/framework3/trunk@12711 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 04:48:25 +00:00 |
Wei Chen
|
0c60fe5a4b
|
Couldn't help but patch-diff it and updated the description again
git-svn-id: file:///home/svn/framework3/trunk@12710 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 04:45:17 +00:00 |
Wei Chen
|
6b6c6b2f64
|
We're actually not using 'Ret', it is removed.
git-svn-id: file:///home/svn/framework3/trunk@12706 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-24 23:15:06 +00:00 |
Wei Chen
|
af4b8bfef6
|
RCA done, the new description explains what really happens that causes the vulnerability.
git-svn-id: file:///home/svn/framework3/trunk@12705 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-24 22:58:10 +00:00 |
Wei Chen
|
f80c66ee8f
|
Disclosure date is actually May 10 2011, confirmed by Mr_Me.
git-svn-id: file:///home/svn/framework3/trunk@12698 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 23:55:03 +00:00 |
Steve Tornio
|
fd6a3def6e
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12695 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 19:50:57 +00:00 |
Wei Chen
|
d900892da8
|
Disclosure date change. '2007' wouldn't make sense now, would it?
git-svn-id: file:///home/svn/framework3/trunk@12692 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 16:30:07 +00:00 |
Wei Chen
|
8089d10618
|
Added VisiWave Site Survey Report buffer overflow exploit
git-svn-id: file:///home/svn/framework3/trunk@12691 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 16:28:38 +00:00 |
Steve Tornio
|
28d5febfad
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12688 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-22 23:41:15 +00:00 |
Wei Chen
|
e916a61eec
|
Date format fix
git-svn-id: file:///home/svn/framework3/trunk@12685 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-22 22:09:52 +00:00 |
Wei Chen
|
d9c0d1c941
|
Added Magix Musik Maker 16 buffer overflow exploit
git-svn-id: file:///home/svn/framework3/trunk@12684 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-22 22:08:09 +00:00 |
James Lee
|
36983436db
|
play a little nicer with browser autopwn by not spraying the heap if creating the vulnerable object failed
git-svn-id: file:///home/svn/framework3/trunk@12667 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-19 19:45:14 +00:00 |
James Lee
|
0b88468617
|
out with the new, in with the old. css_clip is pretty unreliable in my tests, go back to using ie_behaviors in browser autopwn
git-svn-id: file:///home/svn/framework3/trunk@12663 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-19 16:33:55 +00:00 |
Wei Chen
|
f9c49ef9ce
|
Comment update (this is still for the egghunter fix: bug #4552)
git-svn-id: file:///home/svn/framework3/trunk@12657 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-18 19:50:22 +00:00 |
Wei Chen
|
6345fec06c
|
checksum support for egghunter disabled, because not enough room for it. See r4552.
git-svn-id: file:///home/svn/framework3/trunk@12656 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-18 19:48:06 +00:00 |
Steve Tornio
|
72692d27f7
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12643 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-17 11:28:25 +00:00 |
Wei Chen
|
4f56444f2c
|
Fix for nops
git-svn-id: file:///home/svn/framework3/trunk@12639 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-16 19:30:17 +00:00 |
Wei Chen
|
95700687de
|
Added IGSS 9 buffer overflow
git-svn-id: file:///home/svn/framework3/trunk@12638 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-16 19:02:05 +00:00 |
Wei Chen
|
40894c3726
|
Moving Iconics webhmi activeX exploit from browser to scada directory
git-svn-id: file:///home/svn/framework3/trunk@12584 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-11 20:45:54 +00:00 |
Steve Tornio
|
d0c93f7e49
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12582 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-11 11:33:16 +00:00 |
Wei Chen
|
5d59d819ac
|
Added SPlayer Content-Type bof
git-svn-id: file:///home/svn/framework3/trunk@12581 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-11 00:18:11 +00:00 |
Steve Tornio
|
b84df80983
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12576 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-10 19:16:07 +00:00 |
Wei Chen
|
105b5799af
|
Added ICONICS WebHMI ActiveX SetActiveXGuid bof
git-svn-id: file:///home/svn/framework3/trunk@12573 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-10 18:07:15 +00:00 |
Steve Tornio
|
c87ba8f026
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12557 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-06 19:33:01 +00:00 |
Joshua Drake
|
5b8e4707cc
|
Add an exploit for CVE-2011-1574 (libmodplug via VLC 1.1.8)
git-svn-id: file:///home/svn/framework3/trunk@12544 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-06 15:29:07 +00:00 |
Wei Chen
|
8d78a47e45
|
get_resource() added to 'src' parameter
git-svn-id: file:///home/svn/framework3/trunk@12543 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-05 22:10:30 +00:00 |
David Rude
|
c80d454dd7
|
fixes some logic which restricted the use of other windows targets
git-svn-id: file:///home/svn/framework3/trunk@12542 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-05 15:11:46 +00:00 |
David Rude
|
a8b6c43636
|
reverting the disclosure dates for now need to clean up the patch
git-svn-id: file:///home/svn/framework3/trunk@12540 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-04 20:43:19 +00:00 |
David Rude
|
3b7ea08f6a
|
Fixes a ton of Disclosure Date discrepencies in various modules, thanks a ton to Michael Baker for spending the time to ensure accuracy
git-svn-id: file:///home/svn/framework3/trunk@12539 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-04 19:17:31 +00:00 |
Steve Tornio
|
fdd9b361bb
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12532 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-03 11:40:09 +00:00 |
Wei Chen
|
9c619c3a40
|
Added mjm quickplayer s3m bof
git-svn-id: file:///home/svn/framework3/trunk@12474 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-30 02:37:14 +00:00 |
Wei Chen
|
72af607aef
|
Added MJM Coreplayer s3m bof
git-svn-id: file:///home/svn/framework3/trunk@12473 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-30 02:36:14 +00:00 |
Mario Ceballos
|
be2f68afbd
|
this method doesnt work with a licensed install.
git-svn-id: file:///home/svn/framework3/trunk@12470 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-29 22:17:40 +00:00 |
Wei Chen
|
8fa4443a68
|
Added Subtitle Processor 7.7.1 bof
git-svn-id: file:///home/svn/framework3/trunk@12461 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-28 08:12:32 +00:00 |
Mario Ceballos
|
be83842dff
|
added exploit module emc_homebase_exec.rb
git-svn-id: file:///home/svn/framework3/trunk@12458 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-27 20:29:27 +00:00 |
Wei Chen
|
f59db11f0e
|
Fixed typo in description. Thanks ragecyr.
git-svn-id: file:///home/svn/framework3/trunk@12456 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-27 16:54:49 +00:00 |
Wei Chen
|
a31ac81b57
|
Added eZip Wizard 3.0 Stack Buffer Overflow
git-svn-id: file:///home/svn/framework3/trunk@12428 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-25 01:06:34 +00:00 |
Wei Chen
|
2772be9125
|
Small offset change for Win 7 target requested by sd
git-svn-id: file:///home/svn/framework3/trunk@12422 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-24 03:50:55 +00:00 |
Wei Chen
|
c5d51cf810
|
Disclosure date change
git-svn-id: file:///home/svn/framework3/trunk@12391 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-21 15:45:07 +00:00 |
Wei Chen
|
7ef79e3ca5
|
Changed disclosure date
git-svn-id: file:///home/svn/framework3/trunk@12389 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-21 15:34:01 +00:00 |
Mario Ceballos
|
31f2afc033
|
fix date
git-svn-id: file:///home/svn/framework3/trunk@12388 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-21 11:12:34 +00:00 |
Wei Chen
|
cb491e35d2
|
Changed disclosure date
git-svn-id: file:///home/svn/framework3/trunk@12384 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-21 02:10:40 +00:00 |
Wei Chen
|
458d8cccb8
|
Modified heap spray routine. Added IE 8 target for XP SP3.
git-svn-id: file:///home/svn/framework3/trunk@12383 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-20 21:55:33 +00:00 |
amaloteaux
|
a08bef0a47
|
allow the wireshark dect dissector exploit to be used remotly
git-svn-id: file:///home/svn/framework3/trunk@12376 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-20 16:36:48 +00:00 |
Wei Chen
|
488c6de9df
|
Description change again
git-svn-id: file:///home/svn/framework3/trunk@12371 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 16:41:58 +00:00 |
Wei Chen
|
4b7595b8e4
|
Updated the size of the pcap file. Description also udpated.
git-svn-id: file:///home/svn/framework3/trunk@12369 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 16:34:17 +00:00 |
Wei Chen
|
6d0bfaaa57
|
Updated author
git-svn-id: file:///home/svn/framework3/trunk@12368 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 15:23:49 +00:00 |
Steve Tornio
|
0859bb18a7
|
add cve and osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@12365 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 11:32:17 +00:00 |
Wei Chen
|
90668a9913
|
Date format fix
git-svn-id: file:///home/svn/framework3/trunk@12364 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 07:53:58 +00:00 |
Wei Chen
|
9d40da6bbb
|
Title change
git-svn-id: file:///home/svn/framework3/trunk@12363 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 06:43:05 +00:00 |
Wei Chen
|
9c60889f02
|
Added Wireshark packet-dect memcpy overflow (.pcap)
git-svn-id: file:///home/svn/framework3/trunk@12362 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 06:41:57 +00:00 |
Wei Chen
|
d4dd84536d
|
Added Win 7 target
git-svn-id: file:///home/svn/framework3/trunk@12361 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-19 03:10:36 +00:00 |
HD Moore
|
b94d09cdf1
|
Try a little harder to make this module more reliable through TCP proxies
git-svn-id: file:///home/svn/framework3/trunk@12359 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-18 20:53:21 +00:00 |
Wei Chen
|
c28e7259ac
|
Added CVE-2011-0611 Adobe Flash 0day
git-svn-id: file:///home/svn/framework3/trunk@12330 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-16 02:09:33 +00:00 |
Wei Chen
|
9ac36d6e0a
|
Forgot to change two other hardcoded junks to random alpha bytes
git-svn-id: file:///home/svn/framework3/trunk@12322 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-14 23:28:58 +00:00 |
Wei Chen
|
b81d87173f
|
Added mr_me's Win XP SP3 + DEP target
git-svn-id: file:///home/svn/framework3/trunk@12320 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-14 23:08:47 +00:00 |
James Lee
|
b5e0962e3e
|
return the appropriate check codes instead of just printing stuff. add some error checks to avoid stack traces against samba and non-existant hosts
git-svn-id: file:///home/svn/framework3/trunk@12314 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-13 23:26:07 +00:00 |
Steve Tornio
|
79e84a46e9
|
add cve & osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@12306 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-12 11:04:29 +00:00 |
Wei Chen
|
33249bea32
|
Changed 0x90 nops to make_nops() instead
git-svn-id: file:///home/svn/framework3/trunk@12305 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-11 23:32:41 +00:00 |
Wei Chen
|
3dec79f346
|
Format fix again
git-svn-id: file:///home/svn/framework3/trunk@12304 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-11 23:24:12 +00:00 |
Wei Chen
|
e5068838ff
|
Last format fix
git-svn-id: file:///home/svn/framework3/trunk@12301 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-11 22:31:27 +00:00 |
Wei Chen
|
300989db5f
|
Format issue fix
git-svn-id: file:///home/svn/framework3/trunk@12299 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-11 22:28:38 +00:00 |
Wei Chen
|
eea7a0e743
|
Added Video Spirit vlsprj buffer overflow exploit
git-svn-id: file:///home/svn/framework3/trunk@12296 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-11 22:09:23 +00:00 |
David Rude
|
39f4c0c42f
|
Added MS08-067 check method thanks staylor =)
git-svn-id: file:///home/svn/framework3/trunk@12294 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-11 16:32:59 +00:00 |
Patrick Webster
|
e9e8026832
|
Fixed author name in modules for myself.
git-svn-id: file:///home/svn/framework3/trunk@12292 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-11 02:25:36 +00:00 |
Wei Chen
|
ffe6868d22
|
Updated vbs stager temp var
git-svn-id: file:///home/svn/framework3/trunk@12286 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-04-09 18:24:43 +00:00 |