HD Moore
|
99e2c9aa72
|
Looks like my initial testing was wrong - you can trigger this entirely through HTTP with a meta refresh, just not with a 301 (IE only).
git-svn-id: file:///home/svn/framework3/trunk@9888 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-20 19:54:56 +00:00 |
Joshua Drake
|
786ccb3d5f
|
add support for OWC11 (from DSR!)
git-svn-id: file:///home/svn/framework3/trunk@9883 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-20 06:24:19 +00:00 |
HD Moore
|
d388c1bc4f
|
Handle unknown requests in a cleaner way
git-svn-id: file:///home/svn/framework3/trunk@9879 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-20 03:08:43 +00:00 |
James Lee
|
08d705c1db
|
add java meterpreter and update java_calendar_deserialize to be able to use it, see #406
git-svn-id: file:///home/svn/framework3/trunk@9874 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-20 00:53:24 +00:00 |
Joshua Drake
|
e30164e09e
|
possibly fix a bug
git-svn-id: file:///home/svn/framework3/trunk@9873 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-20 00:23:18 +00:00 |
Steve Tornio
|
3674a11fa5
|
add osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@9870 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-19 23:02:22 +00:00 |
HD Moore
|
fcd23fbdce
|
Adds coverage for the Windows Shell LNK code execution flaw (CVE-2010-2568)
git-svn-id: file:///home/svn/framework3/trunk@9869 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-19 22:36:26 +00:00 |
Joshua Drake
|
45303646d4
|
switch to using jmp ecx :-/
git-svn-id: file:///home/svn/framework3/trunk@9854 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-17 04:34:39 +00:00 |
Joshua Drake
|
899ecc2604
|
use a more indirect method, more reliable
git-svn-id: file:///home/svn/framework3/trunk@9852 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-17 01:28:27 +00:00 |
Joshua Drake
|
3b4c732ec0
|
typos
git-svn-id: file:///home/svn/framework3/trunk@9843 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-16 03:34:22 +00:00 |
Joshua Drake
|
d07e613504
|
style compliance fixes
git-svn-id: file:///home/svn/framework3/trunk@9842 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-16 02:33:25 +00:00 |
Joshua Drake
|
f4f1c1105d
|
add exploit for cve-2010-2063
git-svn-id: file:///home/svn/framework3/trunk@9841 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-16 02:31:37 +00:00 |
Joshua Drake
|
9e360f19e0
|
ignore timeout errors, see #2260
git-svn-id: file:///home/svn/framework3/trunk@9839 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-15 20:54:03 +00:00 |
Joshua Drake
|
b73e13bd62
|
add xpsp1-jp target from Masashi, fixes #2255
git-svn-id: file:///home/svn/framework3/trunk@9838 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-15 20:18:34 +00:00 |
HD Moore
|
fb57dde60c
|
Do not spew HTML to the screen
git-svn-id: file:///home/svn/framework3/trunk@9829 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-14 18:23:47 +00:00 |
HD Moore
|
bb67f56ee8
|
Clean up two samba modules to prevent them from brute forcing invalid targets
git-svn-id: file:///home/svn/framework3/trunk@9828 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-14 17:27:23 +00:00 |
Joshua Drake
|
ccd4416b5f
|
add another httpfingerprint, thx again mc
git-svn-id: file:///home/svn/framework3/trunk@9820 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-14 13:59:38 +00:00 |
Joshua Drake
|
edb593987a
|
add more http fingerprints, thx mc
git-svn-id: file:///home/svn/framework3/trunk@9818 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-14 00:02:21 +00:00 |
Mario Ceballos
|
21babc2bfa
|
updated due to reliability. all payloads work now.
git-svn-id: file:///home/svn/framework3/trunk@9814 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-13 22:38:44 +00:00 |
Joshua Drake
|
6d23204c6f
|
add more http fingerprints
git-svn-id: file:///home/svn/framework3/trunk@9812 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-13 22:11:40 +00:00 |
HD Moore
|
24800ca1ec
|
Add reference for the help center bug
git-svn-id: file:///home/svn/framework3/trunk@9810 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-13 19:31:40 +00:00 |
HD Moore
|
19f1583ba5
|
Change to match MSB
git-svn-id: file:///home/svn/framework3/trunk@9809 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-13 19:30:47 +00:00 |
HD Moore
|
edae6e2d02
|
Change to match MSB
git-svn-id: file:///home/svn/framework3/trunk@9808 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-13 19:30:36 +00:00 |
James Lee
|
9891ea5374
|
Typo which caused this exploit never to get run in browser_autopwn
git-svn-id: file:///home/svn/framework3/trunk@9802 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-13 09:03:56 +00:00 |
Joshua Drake
|
4b5f4b896a
|
add a note about why this module is not an HttpClient module
git-svn-id: file:///home/svn/framework3/trunk@9798 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-12 23:25:49 +00:00 |
Joshua Drake
|
16ff17c9d1
|
add more http fingerprints -- thx mc
git-svn-id: file:///home/svn/framework3/trunk@9797 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-12 23:25:31 +00:00 |
James Lee
|
a5786cdc64
|
stop using some older exploits in browser_autopwn in favor of ie_behaviors which works on more versions
git-svn-id: file:///home/svn/framework3/trunk@9787 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-12 02:51:50 +00:00 |
James Lee
|
9f37d46f7b
|
minimize autopwn settings
git-svn-id: file:///home/svn/framework3/trunk@9784 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-11 23:21:04 +00:00 |
James Lee
|
28e40bdc9f
|
add java_calendar_deserialize to browser_autopwn
git-svn-id: file:///home/svn/framework3/trunk@9783 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-11 23:16:51 +00:00 |
Joshua Drake
|
c1f74794eb
|
style compliance fixes
git-svn-id: file:///home/svn/framework3/trunk@9744 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-08 23:34:50 +00:00 |
Joshua Drake
|
663b863b6d
|
http fingerprint checking update
git-svn-id: file:///home/svn/framework3/trunk@9719 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 17:38:59 +00:00 |
Joshua Drake
|
389259c5d4
|
reworked module significantly, updated for latest installer from badblue.com, added http_fingerprint
git-svn-id: file:///home/svn/framework3/trunk@9705 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 06:54:20 +00:00 |
Joshua Drake
|
163d273dff
|
convert module to HttpClient, check fingerprint -- untested
git-svn-id: file:///home/svn/framework3/trunk@9704 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 01:43:12 +00:00 |
Joshua Drake
|
dfce4901fe
|
change error message
git-svn-id: file:///home/svn/framework3/trunk@9703 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 01:34:11 +00:00 |
Joshua Drake
|
d84c519678
|
switch to HttpClient, check fingerprint first
git-svn-id: file:///home/svn/framework3/trunk@9702 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 01:33:38 +00:00 |
Joshua Drake
|
a018149278
|
check fingerprint first
git-svn-id: file:///home/svn/framework3/trunk@9701 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 01:33:03 +00:00 |
Joshua Drake
|
81cce81969
|
convert modules to HttpClient, use http_fingerprint
git-svn-id: file:///home/svn/framework3/trunk@9700 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-07 01:22:26 +00:00 |
Joshua Drake
|
ac267c5856
|
minor tweaks
git-svn-id: file:///home/svn/framework3/trunk@9697 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-06 22:15:16 +00:00 |
Joshua Drake
|
8c0e5fdf73
|
fix references, whitespace
git-svn-id: file:///home/svn/framework3/trunk@9696 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-06 21:59:16 +00:00 |
Joshua Drake
|
e5bf3301fb
|
note ORD recommendation
git-svn-id: file:///home/svn/framework3/trunk@9695 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-06 21:58:57 +00:00 |
Joshua Drake
|
11bb8dee28
|
convert to httpclient module, use fingerprint
git-svn-id: file:///home/svn/framework3/trunk@9694 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-06 21:54:58 +00:00 |
Joshua Drake
|
a3d901a6b9
|
various minor fixes, some added fingerprinting
git-svn-id: file:///home/svn/framework3/trunk@9671 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-03 06:21:31 +00:00 |
Joshua Drake
|
c7f5ba801c
|
add lots of disclosure dates from OSVDB (missed a few)
git-svn-id: file:///home/svn/framework3/trunk@9670 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-03 03:19:07 +00:00 |
Joshua Drake
|
7d945ed9dc
|
add lots of disclosure dates from OSVDB
git-svn-id: file:///home/svn/framework3/trunk@9669 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-03 03:13:45 +00:00 |
Joshua Drake
|
56ea22716e
|
oops, broke the tree
git-svn-id: file:///home/svn/framework3/trunk@9668 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-03 01:38:15 +00:00 |
Joshua Drake
|
9984b662e0
|
switch some URL references to US-CERT-VU type
git-svn-id: file:///home/svn/framework3/trunk@9666 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-03 01:09:32 +00:00 |
Joshua Drake
|
f6f954a18c
|
add missing CVE/OSVDB references, plenty still missing *wink wink*
git-svn-id: file:///home/svn/framework3/trunk@9659 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-02 00:10:51 +00:00 |
Joshua Drake
|
0882838491
|
ensure binary mode when opening files, whitespace fixes
git-svn-id: file:///home/svn/framework3/trunk@9653 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-01 23:33:07 +00:00 |
Joshua Drake
|
b9a4105786
|
see #1000, remove encoder in favor of auto-selection
git-svn-id: file:///home/svn/framework3/trunk@9648 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-01 21:35:10 +00:00 |
Joshua Drake
|
bfaa9a9a6f
|
modify badchars, minor cleanups, fixes #1000
git-svn-id: file:///home/svn/framework3/trunk@9647 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-01 21:31:51 +00:00 |