jvazquez-r7
|
c00094ba6e
|
Land #3345, @mvdevnull's auxiliary module for OSVDB 106815, Alienvault sqli
|
2014-09-19 15:01:21 -05:00 |
jvazquez-r7
|
62414e2214
|
Add Timeout to exploit sqli
|
2014-09-19 15:00:54 -05:00 |
jvazquez-r7
|
db6372ec8b
|
Do minor module cleanup
|
2014-09-19 14:43:35 -05:00 |
jvazquez-r7
|
4a9294e3bf
|
Mark module as not executable
|
2014-09-19 14:36:44 -05:00 |
Joe Vennix
|
59dfa624c4
|
Add a REMOTE_JS datastore option for BeEf hooks etc.
|
2014-09-16 13:31:03 -05:00 |
Tod Beardsley
|
4fc1ec09c7
|
Land #3759, Android UXSS, with ref/desc fixes
Incidentally, this also closes jvennix-r7#14 (let's see if I can close a
PR by merging from another repo!)
Also fixes #3782 (opened by accident).
|
2014-09-11 14:27:51 -05:00 |
Tod Beardsley
|
fbba4b32e0
|
Update the title and desc to be more descriptive
See #3759
|
2014-09-11 14:06:14 -05:00 |
Tod Beardsley
|
d627ab7628
|
Add refs for Android UXSS
See #3759
|
2014-09-11 14:05:50 -05:00 |
sinn3r
|
280e16c241
|
Land #3677 - Updated shodan_search for new API
|
2014-09-10 11:39:00 -05:00 |
sinn3r
|
006393360e
|
Add conditions to check healthy shodan results
|
2014-09-10 11:38:06 -05:00 |
Joe Vennix
|
7793ed4fea
|
Add some common UXSS scripts.
|
2014-09-09 02:31:27 -05:00 |
Joe Vennix
|
27889ea411
|
Add a safety fallback on js load.
|
2014-09-08 00:46:47 -05:00 |
Joe Vennix
|
8407d45c9c
|
Rework the timers.
|
2014-09-08 00:40:00 -05:00 |
Joe Vennix
|
5c9c8edfcf
|
Fix refs.
|
2014-09-07 23:33:45 -05:00 |
Joe Vennix
|
5efaf7d4cf
|
rename module, handle asyncness.
|
2014-09-07 23:25:08 -05:00 |
Joe Vennix
|
1bf89fb6bd
|
Add Android <= 4.3 AOSP UXSS module.
|
2014-09-07 20:44:03 -05:00 |
Chris Hebert
|
abffdd8705
|
Update alienvault_newpolicyform_sqli.rb
cleaned up according to msftidy.rb suggestions
modules/auxiliary/gather/alienvault_newpolicyform_sqli.rb:17 - [WARNING] Spaces at EOL
modules/auxiliary/gather/alienvault_newpolicyform_sqli.rb:18 - [WARNING] Tabbed indent: "\tlack of input filtering to read an arbitrary file from the file system.\n"
modules/auxiliary/gather/alienvault_newpolicyform_sqli.rb:29 - [WARNING] Space-Tab mixed indent: "\t [ 'OSVDB', '106815' ],\n"
modules/auxiliary/gather/alienvault_newpolicyform_sqli.rb:29 - [WARNING] Tabbed indent: "\t [ 'OSVDB', '106815' ],\n"
modules/auxiliary/gather/alienvault_newpolicyform_sqli.rb:30 - [WARNING] Space-Tab mixed indent: "\t [ 'EDB', '33317'],\n"
modules/auxiliary/gather/alienvault_newpolicyform_sqli.rb:30 - [WARNING] Tabbed indent: "\t [ 'EDB', '33317'],\n"
modules/auxiliary/gather/alienvault_newpolicyform_sqli.rb:110 - [WARNING] Spaces at EOL
|
2014-09-04 21:46:37 -04:00 |
Chris Hebert
|
664cc131e3
|
Update alienvault_newpolicyform_sqli.rb
added 'ctx' variable relating to jvazquez-r7 note added on Jun 9
|
2014-09-04 21:34:24 -04:00 |
jvazquez-r7
|
ff210a7c0a
|
delete parenthesis
|
2014-09-04 16:16:29 -05:00 |
William Vu
|
2d8c7a7a4d
|
Refactor if statement to early return
This eliminates the protracted if statement and aligns the code body.
|
2014-09-04 15:05:30 -05:00 |
John Sawyer
|
3281781f6a
|
Addressed r7 comments, fixed bug in results loop
|
2014-09-01 13:43:31 -04:00 |
Jon Hart
|
246f021437
|
Update natpmp_external_address to use Msf::Auxiliary::UDPScanner
|
2014-08-26 10:49:53 -07:00 |
Jon Hart
|
162508f532
|
Update NAT-PMP modules to use new/updated mixins
|
2014-08-26 10:49:53 -07:00 |
Jon Hart
|
816404bb88
|
Move common NAT-PMP functionality into a central place
|
2014-08-26 10:49:53 -07:00 |
Jon Hart
|
ca11eae3a9
|
Show a useful failure message when the external address probe fails
|
2014-08-26 10:49:52 -07:00 |
John Sawyer
|
0a27a18104
|
Committing changes from r7 comments
|
2014-08-23 00:08:27 -04:00 |
John Sawyer
|
1959f7a235
|
Updated shodan_search for new API
|
2014-08-20 00:48:13 -04:00 |
jvazquez-r7
|
674c3ca260
|
Use [] for references
|
2014-07-30 10:44:42 -05:00 |
Christian Mehlmauer
|
3d2a62bc29
|
Updated W3 Total Cache Hash extract module
|
2014-07-29 19:49:48 +02:00 |
jvazquez-r7
|
8937fbb2f5
|
Fix email format
|
2014-07-11 12:45:23 -05:00 |
William Vu
|
43f41de124
|
Land #3508, CVE-2014-4671 Flash JSONP disclosure
|
2014-07-11 10:11:48 -05:00 |
joev
|
b8225ae2dc
|
Remove unnecessary ||= and ivars.
|
2014-07-10 16:06:28 -05:00 |
joev
|
e0389dfbc3
|
Update code as per @wvu's code review.
|
2014-07-10 15:03:40 -05:00 |
joev
|
dd439066ca
|
Patch rhost to display hostname of JSONP_URL.
|
2014-07-10 12:02:22 -05:00 |
joev
|
841cb6a590
|
STEAL_URL -> STEAL_URLS.
|
2014-07-10 09:14:32 -05:00 |
joev
|
fad30bc874
|
Add flash rosetta exploit module for stealing URLs.
|
2014-07-10 09:09:10 -05:00 |
HD Moore
|
002234993f
|
SMB lib fixes, unattend.xml cred gathering
|
2014-06-23 20:08:42 -05:00 |
Meatballs
|
615aeb66a5
|
Dont use or
|
2014-06-23 23:11:04 +01:00 |
Meatballs
|
752007848b
|
Tidy up code
Dont rescue Exception
Remove eol spaces
Dont use and
More verbose path
|
2014-06-23 23:08:33 +01:00 |
HD Moore
|
2772d84a18
|
Major rework of this module, please see the diff
|
2014-06-23 16:13:42 -05:00 |
William Vu
|
a0aca251f5
|
Land #3472, releae fixes
|
2014-06-23 11:41:35 -05:00 |
Tod Beardsley
|
0219c4974a
|
Release fixups, word choice, refs, etc.
|
2014-06-23 11:17:00 -05:00 |
William Vu
|
40d1ec551e
|
Add WEP, PSK, and MGT
|
2014-06-21 23:15:20 -05:00 |
Spencer McIntyre
|
c685e0d06e
|
Land #3444, chromecast wifi enumeration
|
2014-06-17 22:09:58 -04:00 |
William Vu
|
1394ad1431
|
Break my double quote habit
Doesn't it feel better? C doesn't love me anymore.
|
2014-06-17 14:22:55 -05:00 |
William Vu
|
8376b4aa2b
|
Map constants to readable values
Thanks, @zeroSteiner and @kernelsmith. :)
|
2014-06-17 13:10:08 -05:00 |
Tod Beardsley
|
2aa26fa290
|
Minor spacing and word choice fixups
|
2014-06-16 11:40:21 -05:00 |
Tod Beardsley
|
1ab379a0fe
|
Land #3448, ident =! indent
|
2014-06-12 14:15:06 -05:00 |
Tod Beardsley
|
e9783200f2
|
Land #3447, fix variable typo
|
2014-06-12 14:07:34 -05:00 |
William Vu
|
cb91b2b094
|
Fix broken table indent (s/Ident/Indent/ hash key)
|
2014-06-12 13:41:44 -05:00 |