HD Moore
|
f8c2a203fd
|
OSVDB references updates from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6812 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-16 16:02:24 +00:00 |
Patrick Webster
|
f151ecc0ca
|
Added mirc_privmsg_server exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6806 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-15 11:44:55 +00:00 |
Mario Ceballos
|
6005ac7c3f
|
added exploit module tns_service_name.rb. updated ora_ntlm_stealer.rb to use the new mixin.
git-svn-id: file:///home/svn/framework3/trunk@6804 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-15 03:50:45 +00:00 |
HD Moore
|
6624dbd5ff
|
Adds coverage for SBerry's Firefox 3.5 exploit (win32 only atm).
git-svn-id: file:///home/svn/framework3/trunk@6803 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 21:59:35 +00:00 |
HD Moore
|
b018df89da
|
Some minor tweaks, looks like this module doesnt play nice with the new JS encrypter
git-svn-id: file:///home/svn/framework3/trunk@6799 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 11:59:33 +00:00 |
HD Moore
|
b2a0f8adf5
|
Comment out references for now
git-svn-id: file:///home/svn/framework3/trunk@6795 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 02:42:52 +00:00 |
HD Moore
|
298ba64734
|
Fix the references section
git-svn-id: file:///home/svn/framework3/trunk@6794 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 00:25:26 +00:00 |
HD Moore
|
306841cc69
|
Adds coverage for the new OWC ActiveX control exploit
git-svn-id: file:///home/svn/framework3/trunk@6792 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 23:39:42 +00:00 |
James Lee
|
d84c87fa36
|
updated version info and disclosure date for opera_historysearch
git-svn-id: file:///home/svn/framework3/trunk@6788 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 23:12:25 +00:00 |
HD Moore
|
5fb316b383
|
Integrates L4teral's JS encoder/encrypter
git-svn-id: file:///home/svn/framework3/trunk@6784 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 22:17:11 +00:00 |
James Lee
|
3e072dd66e
|
add Opera historysearch module; works on linux, windows will come later
git-svn-id: file:///home/svn/framework3/trunk@6777 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 07:48:12 +00:00 |
Mario Ceballos
|
055c58b82e
|
rename module to make room for new one.
git-svn-id: file:///home/svn/framework3/trunk@6775 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 03:50:18 +00:00 |
druid
|
c846f02c79
|
Final commit of working CLSIDs
git-svn-id: file:///home/svn/framework3/trunk@6755 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 22:15:59 +00:00 |
druid
|
7a7b2df5a5
|
Updated list of working ClassIDs
git-svn-id: file:///home/svn/framework3/trunk@6754 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 21:34:13 +00:00 |
druid
|
b9e7e0b902
|
Removed some CLSIDs that didn't work
git-svn-id: file:///home/svn/framework3/trunk@6753 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 21:25:23 +00:00 |
druid
|
02f7d6b586
|
Exploit now uses a random ClassID from the list provided by the Microsoft Advisory rather than a static one (also configurable via an advanced option).
git-svn-id: file:///home/svn/framework3/trunk@6751 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 19:47:44 +00:00 |
HD Moore
|
a54b9a06ef
|
Exploit module for the new MS Video ActiveX flaw from Trancer. See more at http://www.rec-sec.com/2009/07/06/ms-directshow-msvidctl-exploit/
git-svn-id: file:///home/svn/framework3/trunk@6750 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-07 11:11:46 +00:00 |
Patrick Webster
|
a4e0c88a1b
|
Added MDaemon WorldClient Form2Raw.cgi exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6736 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-03 01:26:21 +00:00 |
druid
|
1df854bee7
|
Removed unused options, added success message.
git-svn-id: file:///home/svn/framework3/trunk@6730 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-30 14:09:19 +00:00 |
druid
|
e03428dd8f
|
Disabled debugging output
git-svn-id: file:///home/svn/framework3/trunk@6727 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-30 01:52:48 +00:00 |
druid
|
bb0408e570
|
Exploit for /bin/login over dialup
git-svn-id: file:///home/svn/framework3/trunk@6725 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-29 14:13:41 +00:00 |
Mario Ceballos
|
f90d4123ab
|
added exploit module bopup_comm.rb
git-svn-id: file:///home/svn/framework3/trunk@6721 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-27 14:31:29 +00:00 |
Ramon de C Valle
|
c2362ec409
|
All your POWER are belong to us.
git-svn-id: file:///home/svn/framework3/trunk@6698 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-23 03:49:25 +00:00 |
HD Moore
|
d0fe4e8610
|
Remove overzealous change for 1.9.1 compat
git-svn-id: file:///home/svn/framework3/trunk@6697 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-22 13:22:50 +00:00 |
HD Moore
|
66a6bfe9c0
|
Make the PDF modules 1.9.1 compatible
git-svn-id: file:///home/svn/framework3/trunk@6696 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-22 13:21:08 +00:00 |
HD Moore
|
2ec7693d94
|
Fix up the modules to pass in the framework object into the new API call
git-svn-id: file:///home/svn/framework3/trunk@6687 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 18:18:04 +00:00 |
HD Moore
|
2283e0ffe4
|
Update executable template and API
git-svn-id: file:///home/svn/framework3/trunk@6682 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 17:42:17 +00:00 |
James Lee
|
bc037bbbac
|
make php findsock work again for php_eval and php_include
git-svn-id: file:///home/svn/framework3/trunk@6678 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 05:50:52 +00:00 |
HD Moore
|
3a9e42ceb8
|
Green dam exploit from Trancer
git-svn-id: file:///home/svn/framework3/trunk@6671 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-18 01:54:15 +00:00 |
HD Moore
|
67b307557d
|
fix eol-style settings
git-svn-id: file:///home/svn/framework3/trunk@6668 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-17 20:54:52 +00:00 |
HD Moore
|
5fb2b95190
|
Patch to simplify the fileformat options from antoine
git-svn-id: file:///home/svn/framework3/trunk@6666 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-17 20:34:28 +00:00 |
HD Moore
|
b8efb1bbf9
|
Add Stephen Fewer's shiny exploit for the Java deserialization flaw
git-svn-id: file:///home/svn/framework3/trunk@6664 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-16 17:19:44 +00:00 |
HD Moore
|
697f0946e1
|
Reference correction
git-svn-id: file:///home/svn/framework3/trunk@6637 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-11 23:23:58 +00:00 |
HD Moore
|
a5f567e76e
|
Massive OSVDB reference update from Steve Tornio.
git-svn-id: file:///home/svn/framework3/trunk@6629 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-07 20:20:42 +00:00 |
HD Moore
|
b7cac075e0
|
Adds the itunes overflow from Will Drewry: http://redpig.dataspill.org/2009/05/drive-by-attack-for-itunes-811.html
git-svn-id: file:///home/svn/framework3/trunk@6627 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-05 02:30:24 +00:00 |
Mario Ceballos
|
fe463072d6
|
added exploit module ibmegath_getxmlvalue.rb
git-svn-id: file:///home/svn/framework3/trunk@6609 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-01 11:19:06 +00:00 |
HD Moore
|
f17ee863bc
|
Three new unpatched exploits from trancer: http://www.rec-sec.com
git-svn-id: file:///home/svn/framework3/trunk@6578 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-24 15:06:12 +00:00 |
HD Moore
|
92d242cc2f
|
osvdb references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6568 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-19 13:20:32 +00:00 |
James Lee
|
6c8a93035f
|
make the new random header stuff work with magic_quotes
git-svn-id: file:///home/svn/framework3/trunk@6559 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-17 00:35:56 +00:00 |
James Lee
|
685535c61d
|
add php compatibility to multi/handler
git-svn-id: file:///home/svn/framework3/trunk@6558 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-17 00:26:17 +00:00 |
HD Moore
|
1eddbbf332
|
More references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6551 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-14 19:56:07 +00:00 |
HD Moore
|
9d8581a17e
|
More osvdb references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6550 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-13 17:39:42 +00:00 |
Mario Ceballos
|
6e84b4ea7f
|
missed a , which borked stuff.
git-svn-id: file:///home/svn/framework3/trunk@6549 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-12 21:42:33 +00:00 |
HD Moore
|
0981295879
|
More osvdb references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6547 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-12 19:56:54 +00:00 |
HD Moore
|
0ab728c6a5
|
Added OSVDB references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6546 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-12 19:03:25 +00:00 |
Patrick Webster
|
4bafe57fe3
|
Added cain_abel_4918_rdp.rb from Trancek.
git-svn-id: file:///home/svn/framework3/trunk@6521 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-03 13:29:42 +00:00 |
Patrick Webster
|
de43887fdd
|
Added destinymediaplayer16.rb from Trancek.
git-svn-id: file:///home/svn/framework3/trunk@6520 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-03 12:12:08 +00:00 |
Patrick Webster
|
d78b615190
|
Added racer_503beta5.rb from Trancek.
git-svn-id: file:///home/svn/framework3/trunk@6519 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-03 11:10:37 +00:00 |
Patrick Webster
|
a99354abce
|
Added zinfaudioplayer221_pls from Trancek. Added SEH, universal target and references.
git-svn-id: file:///home/svn/framework3/trunk@6507 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-04-29 03:45:37 +00:00 |
James Lee
|
b31abbc6f9
|
move the payload into a random X- header so it doesn't show up in access logs
git-svn-id: file:///home/svn/framework3/trunk@6493 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-04-19 15:47:14 +00:00 |