cg
|
5421be199a
|
adobe xml inject aux module
git-svn-id: file:///home/svn/framework3/trunk@10894 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-04 02:11:31 +00:00 |
Joshua Drake
|
21f16f63a1
|
style compliance fixes
git-svn-id: file:///home/svn/framework3/trunk@10855 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-01 21:45:49 +00:00 |
Tod Beardsley
|
9c6f771252
|
Suppress the error when your @result is nil in smtp_enum.rb
git-svn-id: file:///home/svn/framework3/trunk@10853 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-11-01 13:56:42 +00:00 |
Tod Beardsley
|
730ec09464
|
Allow for blank FTP usernames. Just not nil ones.
git-svn-id: file:///home/svn/framework3/trunk@10834 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-27 20:12:51 +00:00 |
Joshua Drake
|
e78aa83021
|
style compliance fixes
git-svn-id: file:///home/svn/framework3/trunk@10821 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-25 20:58:49 +00:00 |
HD Moore
|
cf500fb294
|
Subtract the stupid
git-svn-id: file:///home/svn/framework3/trunk@10792 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-23 07:09:59 +00:00 |
Tod Beardsley
|
6f56086df9
|
See #2888. Editing the title and description to reflect the multitude of Barracuda products affected by this module. Only three are actually listed specifically, but users can always refer to the OSVDB listing to get the complete list.
git-svn-id: file:///home/svn/framework3/trunk@10772 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-21 01:18:38 +00:00 |
Joshua Drake
|
1f1cd6af9f
|
commit a couple fixes from peter
git-svn-id: file:///home/svn/framework3/trunk@10766 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-20 15:15:50 +00:00 |
Joshua Drake
|
04858c69fc
|
style compliance fixes
git-svn-id: file:///home/svn/framework3/trunk@10758 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 22:54:19 +00:00 |
Joshua Drake
|
7c1d8c7d05
|
fix false negatives, slightly reworked, fixes #2888
git-svn-id: file:///home/svn/framework3/trunk@10751 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 21:55:19 +00:00 |
Joshua Drake
|
042e71c357
|
add ports/refs for ZDI-10-214
git-svn-id: file:///home/svn/framework3/trunk@10747 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 14:28:52 +00:00 |
Joshua Drake
|
933eb3f6e6
|
switch to cr/lf vs just lf, fixes #2428
git-svn-id: file:///home/svn/framework3/trunk@10741 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-19 00:47:06 +00:00 |
HD Moore
|
21bd23b9e6
|
Fixes #2786
git-svn-id: file:///home/svn/framework3/trunk@10707 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-16 17:53:27 +00:00 |
Tod Beardsley
|
97ebcd30a9
|
Fixes #788 by (finally!) committing Daniele's IPv6 link-local IPv6 scanner. Note that the timing can be a little touchy for this module (as well as for the IPv4 ARP scanner) but seems to be reliable enough on normal networks when scanning a /24.
Sorry for the delay!
git-svn-id: file:///home/svn/framework3/trunk@10700 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-15 22:48:18 +00:00 |
Tod Beardsley
|
48bcc580b8
|
Fixes #2623. This solves the original problem with the SNMP community scanner not respecting the ShowProgress toggle. The other fixes proposed in this bug really kind of seem to be quibbles over what's useful for verbosity and what's not. Please open another ticket for that with a unified diff of the proposed changes.
Thanks for the report!
git-svn-id: file:///home/svn/framework3/trunk@10697 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-15 20:11:51 +00:00 |
Mario Ceballos
|
1f8bca0f3f
|
added auxiliary module for cve-2010-2415
git-svn-id: file:///home/svn/framework3/trunk@10691 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-15 00:20:04 +00:00 |
James Lee
|
1384ba6620
|
fix a typo. see #2578
git-svn-id: file:///home/svn/framework3/trunk@10680 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-14 18:24:56 +00:00 |
Joshua Drake
|
ad4064ed20
|
add ftp client fuzzer and exploits from corelanc0d3r!
git-svn-id: file:///home/svn/framework3/trunk@10658 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-12 17:31:18 +00:00 |
Joshua Drake
|
3e26e9ffd5
|
fix type in print
git-svn-id: file:///home/svn/framework3/trunk@10639 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-11 05:16:17 +00:00 |
Joshua Drake
|
9e6e29428a
|
add disclosure date
git-svn-id: file:///home/svn/framework3/trunk@10638 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-11 04:00:57 +00:00 |
HD Moore
|
06291bb78e
|
Clean up the barracuda module a bit (grammar and removal of the report_auth_info until its refactored)
git-svn-id: file:///home/svn/framework3/trunk@10631 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-10 17:45:30 +00:00 |
Joshua Drake
|
54133b79fd
|
add barracuda module from Tiago
git-svn-id: file:///home/svn/framework3/trunk@10627 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-10 01:42:26 +00:00 |
Tod Beardsley
|
87d7368166
|
Next time, try a couple more test cases. :(
git-svn-id: file:///home/svn/framework3/trunk@10623 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-09 19:54:03 +00:00 |
Tod Beardsley
|
fc755f7a7a
|
Fixes a bug where the return was getting ignored by each_user_pass for FTP. As a result, all usernames would get tried, instead of retiring a username once a good password was found.
git-svn-id: file:///home/svn/framework3/trunk@10622 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-09 19:03:49 +00:00 |
Joshua Drake
|
ae04e34cf7
|
fix some non-full-namespace includes
git-svn-id: file:///home/svn/framework3/trunk@10617 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-09 06:55:52 +00:00 |
Tod Beardsley
|
c2938323cc
|
Pretty much the same deal as r10592, but for SSH, which sometimes has similiar RST problems.
git-svn-id: file:///home/svn/framework3/trunk@10593 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-08 02:11:06 +00:00 |
Tod Beardsley
|
df48b11093
|
Makes telnet_login a more resistant to intermittant RSTs. If a machine gives us a reset, try again with a backoff. Only after 3 retries should we give up entirely. You'd be amazed how many devices this is required for.
git-svn-id: file:///home/svn/framework3/trunk@10592 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-08 01:54:56 +00:00 |
Tod Beardsley
|
b5fe64aca2
|
This works around a blocking problem encountered with recv_telnet(). Don't hang around trying to recv when we've already got a password prompt or a success/fail response.
git-svn-id: file:///home/svn/framework3/trunk@10590 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-08 00:48:24 +00:00 |
Joshua Drake
|
840824e3e8
|
remove unexplained binary characters
git-svn-id: file:///home/svn/framework3/trunk@10588 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-07 16:22:16 +00:00 |
James Lee
|
3d26c54bd7
|
preserve some more datastore bits
git-svn-id: file:///home/svn/framework3/trunk@10518 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-10-01 14:06:59 +00:00 |
Tod Beardsley
|
ea128c6404
|
Mention the port when bruteforcing SMB services. Handy for noticing when you're being direct or indirect.
git-svn-id: file:///home/svn/framework3/trunk@10498 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-27 17:11:40 +00:00 |
Joshua Drake
|
7c1dc98456
|
switch logic around, add some debug/verbose prints
git-svn-id: file:///home/svn/framework3/trunk@10478 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-25 18:14:54 +00:00 |
HD Moore
|
46db59c5af
|
Treat access denied the same as logon failure
git-svn-id: file:///home/svn/framework3/trunk@10474 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-25 03:30:22 +00:00 |
James Lee
|
a9c3628a2d
|
make it more obvious that the connection failed, not the login. see #2682
git-svn-id: file:///home/svn/framework3/trunk@10467 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-24 21:45:36 +00:00 |
Tod Beardsley
|
09cab24dbf
|
Report_note no longer tries to re-report a service name; it just re-reports port numbers and protocols. This is to avoid unidentifying identified services.
git-svn-id: file:///home/svn/framework3/trunk@10458 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-24 17:52:25 +00:00 |
James Lee
|
0001550e6d
|
String#to_a was removed in 1.9.2, replace with [ str ] for compat
git-svn-id: file:///home/svn/framework3/trunk@10448 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-23 21:17:41 +00:00 |
Patrick Webster
|
e6969ba30e
|
Fixed spelling mistake.
git-svn-id: file:///home/svn/framework3/trunk@10445 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-23 05:48:07 +00:00 |
Joshua Drake
|
d9d0f8cc03
|
modify to use EXE mixin, remove unused SUBJECT option
git-svn-id: file:///home/svn/framework3/trunk@10436 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-22 20:55:57 +00:00 |
James Lee
|
aa1d8e403f
|
make sure the list of handler jobs is initialized in case we hit cleanup before exploits have started
git-svn-id: file:///home/svn/framework3/trunk@10430 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-21 22:43:50 +00:00 |
HD Moore
|
3204b3ad83
|
Patch for the SMB timestamp parser which allows it to function in GMT+ zones
git-svn-id: file:///home/svn/framework3/trunk@10425 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-21 14:21:38 +00:00 |
HD Moore
|
8d45915f8c
|
Remove the buggy report_host
git-svn-id: file:///home/svn/framework3/trunk@10414 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-21 03:14:08 +00:00 |
HD Moore
|
76b14e5db7
|
Invert logic for consistency
git-svn-id: file:///home/svn/framework3/trunk@10403 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-21 00:06:18 +00:00 |
HD Moore
|
74e5c38fe8
|
Make the challenge configurable via patch from troulouliou
git-svn-id: file:///home/svn/framework3/trunk@10402 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-21 00:05:08 +00:00 |
Joshua Drake
|
4590844871
|
tons of indentation fixes, some other style tweaks
git-svn-id: file:///home/svn/framework3/trunk@10394 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-20 08:06:27 +00:00 |
Joshua Drake
|
78188beb6b
|
change from capture to service
git-svn-id: file:///home/svn/framework3/trunk@10393 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-20 08:05:50 +00:00 |
HD Moore
|
e59ec467af
|
Quick SMB upload module for when you need to upload a file via PTH
git-svn-id: file:///home/svn/framework3/trunk@10387 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-20 04:03:26 +00:00 |
James Lee
|
5f0cc946b1
|
document report_note a little better, and modify several modules to use it correctly. fixes #2568
git-svn-id: file:///home/svn/framework3/trunk@10377 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-19 22:25:56 +00:00 |
Mario Ceballos
|
9975827d22
|
updated module from Thomas Ring.
git-svn-id: file:///home/svn/framework3/trunk@10371 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-18 23:59:28 +00:00 |
HD Moore
|
e939379b1b
|
Fix missing end, use explicit Timeout class
git-svn-id: file:///home/svn/framework3/trunk@10366 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-18 04:15:32 +00:00 |
Tod Beardsley
|
b023d89469
|
Wrap SSH and Telnet version checkers in a timeout, or else they sometimes hang forever.
git-svn-id: file:///home/svn/framework3/trunk@10365 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-09-18 03:00:19 +00:00 |