jvazquez-r7
|
a55579dd4a
|
Fix references
|
2014-04-08 15:56:56 -05:00 |
jvazquez-r7
|
4004cd8f9a
|
Allow hello data to grow dinamically
|
2014-04-08 15:52:39 -05:00 |
jvazquez-r7
|
b8e2c9fe42
|
Clean and fix @Firefart's code
|
2014-04-08 15:32:13 -05:00 |
jvazquez-r7
|
80bdbbed92
|
Solve conflict
|
2014-04-08 15:18:38 -05:00 |
Christian Mehlmauer
|
8c7debb81d
|
Added some comments and modified JABBER
|
2014-04-08 22:13:02 +02:00 |
jvazquez-r7
|
021da84459
|
Add authors and switch and's format
|
2014-04-08 15:10:27 -05:00 |
Christian Mehlmauer
|
9c053a5b91
|
Added additional protocols
|
2014-04-08 21:56:05 +02:00 |
jvazquez-r7
|
5f29026cb2
|
Complete @Firefart's module
|
2014-04-08 14:13:56 -05:00 |
Christian Mehlmauer
|
ac0cafcca6
|
Initial commit for openssl Heartbleed bug
|
2014-04-07 21:15:54 +02:00 |
Tod Beardsley
|
7572d6612e
|
Spelling and grammar on new release modules
|
2014-04-07 12:18:13 -05:00 |
sinn3r
|
0c883723ba
|
Land #3149 - Oracle Demantra Arbitrary File Retrieval with auth bypass
|
2014-04-07 11:11:55 -05:00 |
sinn3r
|
31dfae3a01
|
Follow the 100 columns per line guideline
|
2014-04-07 11:10:20 -05:00 |
sinn3r
|
de242ecc00
|
Correct date format
Hmm weird, msftidy didn't pick this up
|
2014-04-07 11:09:27 -05:00 |
Spencer McIntyre
|
395f5beef8
|
Land #3178, http header scan module
|
2014-04-04 11:36:35 -04:00 |
Spencer McIntyre
|
2b6ae68cbf
|
Minor modifications for http_header
|
2014-04-04 10:46:03 -04:00 |
Christian Mehlmauer
|
b4aa08251f
|
changed option from string to regex
|
2014-04-03 19:34:40 +02:00 |
Christian Mehlmauer
|
a4adfac312
|
Added feedback for http_header module
|
2014-04-02 23:01:23 +02:00 |
Christian Mehlmauer
|
69192edd4b
|
Added new http_header module
|
2014-04-02 22:04:54 +02:00 |
coma
|
149948485a
|
Add CVE-2013-5877+CVE-2013-5880 for Oracle Demantra fixed issues
|
2014-04-01 12:28:41 -07:00 |
William Vu
|
c37dbd104a
|
Clean up perms and whitespace for owa_login
|
2014-04-02 01:45:15 -05:00 |
Tod Beardsley
|
2972220f60
|
Land #3047 for real.
Merge branch 'land-3047-really' into upstream-master
|
2014-04-01 13:16:13 -05:00 |
Spencer McIntyre
|
dfec2eb53f
|
Cleanup an expression and avoid fail_with
|
2014-03-31 18:05:20 -04:00 |
Spencer McIntyre
|
07e04717c2
|
Allow using a single URI and/or a list of URIs
|
2014-03-31 18:05:20 -04:00 |
Joshua Smith
|
b21d5c1801
|
use TARGET_URI if given, otherwise TARGET_URIS_FILE
|
2014-03-31 18:05:20 -04:00 |
Spencer McIntyre
|
5e9e7e15c8
|
Return whether result is nil or not.
|
2014-03-31 18:05:20 -04:00 |
Spencer McIntyre
|
0ac112b5e7
|
Support checking a single URI for ntlm information.
|
2014-03-31 18:05:19 -04:00 |
William Vu
|
3b6d73420e
|
Fix syntax error in dns_amp
|
2014-03-31 16:18:49 -05:00 |
Joshua Smith
|
159bc264a4
|
unretards the uri normalize loop
|
2014-03-31 15:58:21 -04:00 |
Joshua Smith
|
2290249a42
|
uses fail_with to bomb out on datastore probs
|
2014-03-31 15:52:05 -04:00 |
Joshua Smith
|
4f121e3e03
|
fixes if-logic for error condition
|
2014-03-31 15:38:05 -04:00 |
Tod Beardsley
|
894bbcae97
|
More fix-up on the DNS amplication scanner
|
2014-03-31 14:37:10 -05:00 |
Tod Beardsley
|
4d597174d0
|
Merge up from upstream/master
|
2014-03-31 14:33:28 -05:00 |
William Vu
|
387da26f8d
|
Land #3159, HP LaserJet printer SNMP enumeration
|
2014-03-31 12:48:23 -05:00 |
William Vu
|
c6ceb8cdfd
|
Land #2929, DNS recursion amplification scanner
|
2014-03-31 12:47:46 -05:00 |
William Vu
|
aaa15d13d9
|
Land #2928, extended SMTP open relay checks
|
2014-03-31 12:47:10 -05:00 |
Tod Beardsley
|
ffdca3bf42
|
Fixup on some modules for release
There may be more coming, but if not, this should cover
this week's minor style changes.
|
2014-03-31 12:42:19 -05:00 |
Joshua Smith
|
2530fb9741
|
adds the return back in (forgot in prev commit)
|
2014-03-28 19:27:04 -04:00 |
Joshua Smith
|
dc4b8461e8
|
unbreaks & DRYs my previous change.
|
2014-03-28 19:15:38 -04:00 |
Matteo Cantoni
|
c559a6b39f
|
fix description
(cherry picked from commit 7c860b9553 )
|
2014-03-28 17:36:21 -05:00 |
Matteo Cantoni
|
ae53d75cdb
|
Module to HP LaserJet Printer SNMP Enumeration
(cherry picked from commit f18fef1864 )
|
2014-03-28 17:36:21 -05:00 |
jvazquez-r7
|
9374777da1
|
Land #2996, @mcantoni's jboss status aux module
|
2014-03-28 16:07:08 -05:00 |
jvazquez-r7
|
7689751c10
|
Module module location
|
2014-03-28 16:05:37 -05:00 |
William Vu
|
5458200434
|
Fix a couple minor annoyances in PJL
|
2014-03-28 02:19:30 -05:00 |
William Vu
|
c1fdc4d945
|
Fix a couple things that were bugging me
|
2014-03-28 02:15:38 -05:00 |
coma
|
107901b481
|
Add CVE-2013-5877+CVE-2013-5880 for Oracle Demantra msftidy fix
|
2014-03-26 22:37:21 -07:00 |
coma
|
30da3575e8
|
Add CVE-2013-5877+CVE-2013-5880 for Oracle Demantra
|
2014-03-26 21:53:12 -07:00 |
Tod Beardsley
|
5b8d8d8009
|
Get Pro and Framework back in sync.
|
2014-03-26 09:25:19 -05:00 |
William Vu
|
cd448ba46c
|
Land #3132, ntp_monlist improvements
|
2014-03-25 15:19:45 -05:00 |
William Vu
|
1c4797337f
|
Clean up rapid7/metasploit-framework#3132
|
2014-03-25 14:04:43 -05:00 |
Brandon Turner
|
460a1f551c
|
Fix for R7-2014-05
|
2014-03-24 14:12:12 -05:00 |
Joshua Smith
|
312f117262
|
updates file read to close file more quickly
|
2014-03-21 14:53:15 -04:00 |
Matteo Cantoni
|
4b2a2d4dea
|
Improve NTP monlist auxiliary module
|
2014-03-21 16:39:53 +01:00 |
Matteo Cantoni
|
fbcd661504
|
removed snmp_enum_hp_laserjet from this pull request
|
2014-03-21 15:58:53 +01:00 |
Spencer McIntyre
|
aa26405c23
|
Cleanup an expression and avoid fail_with
|
2014-03-20 17:33:09 -04:00 |
Spencer McIntyre
|
74398c4b6e
|
Allow using a single URI and/or a list of URIs
|
2014-03-20 09:54:02 -04:00 |
Joshua Smith
|
a8d919feb0
|
use TARGET_URI if given, otherwise TARGET_URIS_FILE
|
2014-03-19 23:32:04 -05:00 |
William Vu
|
b79920ba8f
|
Land #3089, InvalidWordCount fix for smb_login
[FixRM #8730]
|
2014-03-19 16:12:56 -05:00 |
sinn3r
|
fe0b76e24e
|
Land #2994 - OWA 2013 support
|
2014-03-19 13:16:37 -05:00 |
xistence
|
8fdb5250d4
|
changes to smtp relay aux module
|
2014-03-17 15:09:29 +07:00 |
David Maloney
|
da0c37cee2
|
Land #2684, Meatballs PSExec refactor
|
2014-03-14 13:01:20 -05:00 |
William Vu
|
5aad8f2dc3
|
Land #3088, SNMP timestamp elements fix
|
2014-03-13 02:22:14 -05:00 |
Tod Beardsley
|
206660ddde
|
Recreate the intent of cfebdae from @parzamendi-r7
The idea was to rescue on a NoReply instead of just fail, and was part
of a fix in #2656.
[SeeRM #8730]
|
2014-03-11 14:30:01 -05:00 |
sho-luv
|
f7af9780dc
|
Rescue InvalidWordCount error
This is a cherry-pick of commit ea86da2 from PR #2656
|
2014-03-11 14:17:36 -05:00 |
James Lee
|
f51ee2d6b4
|
snmp_enum: Treat missing timestamp elements as 0
Timestamps don't always have all the elements we expect. This treats
them as zeroes to ensure that we don't raise silly exceptions in that
case.
|
2014-03-11 12:44:07 -05:00 |
William Vu
|
170608e97b
|
Fix first chunk of msftidy "bad char" errors
There needs to be a better way to go about preventing/fixing these.
|
2014-03-11 11:18:54 -05:00 |
Spencer McIntyre
|
ebee365fce
|
Land #2742, report_vuln for MongoDB no auth
|
2014-03-06 19:34:45 -05:00 |
Spencer McIntyre
|
84f280d74f
|
Use a more descriptive MongoDB vulnerability title
|
2014-03-06 19:20:52 -05:00 |
Spencer McIntyre
|
12e4e0e36d
|
Return whether result is nil or not.
|
2014-02-28 10:17:37 -05:00 |
Spencer McIntyre
|
dfa91310c2
|
Support checking a single URI for ntlm information.
|
2014-02-28 08:47:29 -05:00 |
jgor
|
8be33f42fe
|
Define service as udp
|
2014-02-27 12:53:29 -06:00 |
Peter Arzamendi
|
ea5fe9ec0a
|
Updated to use get_cookie
|
2014-02-27 08:52:54 -06:00 |
Peter Arzamendi
|
9e52a10f2d
|
Set SSL to default to true and removed SSL from register_options. Updated Author to include full name
|
2014-02-26 20:49:03 -06:00 |
William Vu
|
6f398f374e
|
Land #3032, inside_workspace_boundary? typo fix
|
2014-02-24 14:55:09 -06:00 |
James Lee
|
d2945b55c1
|
Fix typo
inside_workspace_boundary() -> inside_workspace_boundary?()
|
2014-02-24 14:46:08 -06:00 |
sinn3r
|
5cdd9a2ff3
|
Land #2995 - sqlmap minor cleanup, description & file tests
|
2014-02-24 10:39:01 -06:00 |
jvazquez-r7
|
4ca4d82d89
|
Land #2939, @Meatballs1 exploit for Wikimedia RCE and a lot more...
|
2014-02-18 17:48:02 -06:00 |
xistence
|
1864089085
|
removed rport definition
|
2014-02-17 11:32:24 +07:00 |
Tod Beardsley
|
f6be574453
|
Slightly better file checks on sqlmap.py
|
2014-02-15 09:58:03 -06:00 |
Tod Beardsley
|
dacbf55fc1
|
Minor cleanup of title and desc on sqlmap
|
2014-02-15 09:55:06 -06:00 |
Royce Davis
|
0e7074c139
|
Modififed output for smb_enumshares module
|
2014-02-14 13:39:13 -06:00 |
Royce Davis
|
6dc9840064
|
Modified output for smb_enumshares
|
2014-02-14 13:12:52 -06:00 |
Russell Sim
|
ee3f1fc25b
|
Record successful passwordless access to mongodb
|
2014-02-14 08:52:17 +11:00 |
Matteo Cantoni
|
7c860b9553
|
fix description
|
2014-02-13 21:11:50 +01:00 |
Peter Arzamendi
|
5ef40e3844
|
Removed bad sets on datastore['USERNAME'] and datastore['PASSWORD']
|
2014-02-12 13:31:03 -06:00 |
Peter Arzamendi
|
2b8a8259f9
|
Updates to support OWA 2013 and some syntax changes
|
2014-02-12 09:40:49 -06:00 |
xistence
|
6944c54d13
|
Added EXTENDED option to smtp_relay
|
2014-02-12 15:44:53 +07:00 |
jvazquez-r7
|
79d559a0c9
|
Fix MIME message to_s
|
2014-02-10 22:23:23 -06:00 |
Tod Beardsley
|
1236a4eb07
|
Fixup on description and some option descrips
|
2014-02-10 14:41:59 -06:00 |
xistence
|
02fb84db20
|
Changed dns_amp to avoid false positives
|
2014-02-10 17:13:06 +07:00 |
William Vu
|
a58698c177
|
Land #2922, multithreaded check command
|
2014-02-04 11:21:05 -06:00 |
jvazquez-r7
|
cccf2e4258
|
Land #2926, @xistence A10 Networks Loadbalancer dir traversal module
|
2014-02-04 07:28:51 -06:00 |
jvazquez-r7
|
cc09367c62
|
Change the datastore name option
|
2014-02-04 07:28:14 -06:00 |
jvazquez-r7
|
ffd90a3d38
|
Add confirmation datastore option
|
2014-02-03 12:40:58 -06:00 |
jvazquez-r7
|
a92256e8d1
|
Clean a10networks_ax_directory_traversal
|
2014-02-03 08:41:23 -06:00 |
jvazquez-r7
|
53c2a737e9
|
Don't register rport again
|
2014-01-31 09:42:41 -06:00 |
jvazquez-r7
|
452042e757
|
Land #2925, @xistence aux module for Support Center Plus traversal
|
2014-01-31 09:38:01 -06:00 |
jvazquez-r7
|
e9f04d9203
|
Do final cleanup for Support Center Plus module
|
2014-01-31 09:37:40 -06:00 |
jvazquez-r7
|
32c5d77ebd
|
Land #2918, @wvu's fix for long argument lists
|
2014-01-31 08:49:22 -06:00 |
xistence
|
e81a0ed22b
|
Changes as requested for SupportCenterPlus module
|
2014-01-31 13:28:45 +07:00 |
William Vu
|
56287e308d
|
Clean up unused variables
|
2014-01-30 11:20:21 -06:00 |