HD Moore
|
911583930b
|
Add the missing note type
git-svn-id: file:///home/svn/framework3/trunk@12840 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-03 00:49:45 +00:00 |
James Lee
|
bee19278d7
|
add a new javascript obfuscation engine using rkelly for parsing. use it in browser_autopwn and ms10_018_ie_behaviors. see #1003
git-svn-id: file:///home/svn/framework3/trunk@12839 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-03 00:36:26 +00:00 |
Wei Chen
|
5db2a90fe3
|
Added enum_linux.rb
git-svn-id: file:///home/svn/framework3/trunk@12838 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-03 00:26:29 +00:00 |
amaloteaux
|
b1bb7116ed
|
arp_sweep : automatically detect SHOST and SMAC and do not request localhost
git-svn-id: file:///home/svn/framework3/trunk@12823 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 21:31:36 +00:00 |
amaloteaux
|
f1b8bbd436
|
arp poisoning : auto detect SMAC through new pcaprub code and avoid spoofing local host
git-svn-id: file:///home/svn/framework3/trunk@12822 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 21:12:21 +00:00 |
HD Moore
|
55b4142ddf
|
Minor cleanup
git-svn-id: file:///home/svn/framework3/trunk@12821 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 20:56:55 +00:00 |
Steve Tornio
|
6890ec5610
|
add cve and osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@12816 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 12:24:25 +00:00 |
David Rude
|
bfdb3a2a36
|
Added GoldenFTP exploit
git-svn-id: file:///home/svn/framework3/trunk@12812 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 01:10:22 +00:00 |
Carlos Perez
|
237f03f8e9
|
Windows Post Module for gathering Total Commander FTP client saved passwords
git-svn-id: file:///home/svn/framework3/trunk@12810 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-02 00:20:41 +00:00 |
HD Moore
|
f20adabf8c
|
Fixes #4626 by checking for an out of bounds value before using the type as an array index
git-svn-id: file:///home/svn/framework3/trunk@12809 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 23:47:16 +00:00 |
Carlos Perez
|
5d06a5f366
|
Linux post Module for dumping hashes in to a unshadowed pwd file
git-svn-id: file:///home/svn/framework3/trunk@12808 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 22:57:36 +00:00 |
Carlos Perez
|
e030fb0a1e
|
Linux post Module for enumerating startup of configured services
git-svn-id: file:///home/svn/framework3/trunk@12807 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 22:51:50 +00:00 |
Carlos Perez
|
849600d31e
|
Updated to use new post libraries
git-svn-id: file:///home/svn/framework3/trunk@12806 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 22:49:24 +00:00 |
Wei Chen
|
e549e8d539
|
open_key() call should been part of the begin/rescue block
git-svn-id: file:///home/svn/framework3/trunk@12801 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 19:05:40 +00:00 |
Carlos Perez
|
67ec93585a
|
Multi platform ssh_cred post module by Jim Halfpenny, modified the calls to be cmd_exec and added method to identify proper platform in the case the platform is not properly set for the session like in the case of ssh_login aux module.
git-svn-id: file:///home/svn/framework3/trunk@12797 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 12:46:27 +00:00 |
Carlos Perez
|
07158d11b4
|
slackware packages are not managed by rpm by default
git-svn-id: file:///home/svn/framework3/trunk@12796 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 11:52:36 +00:00 |
Carlos Perez
|
2473e9c754
|
Made the printing of the packages optional
git-svn-id: file:///home/svn/framework3/trunk@12795 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 03:37:37 +00:00 |
Carlos Perez
|
33d1e147a7
|
Typos and Keywords
git-svn-id: file:///home/svn/framework3/trunk@12794 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 03:27:17 +00:00 |
Carlos Perez
|
0e1bc2f4d6
|
Linux Post Module for enumerating installed packages.
git-svn-id: file:///home/svn/framework3/trunk@12793 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-06-01 03:25:17 +00:00 |
Steve Tornio
|
f43368ebe4
|
add osvdb refs
git-svn-id: file:///home/svn/framework3/trunk@12779 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-31 14:33:19 +00:00 |
Wei Chen
|
396e476a03
|
Updated description, documented packet header a bit
git-svn-id: file:///home/svn/framework3/trunk@12774 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 21:17:35 +00:00 |
Wei Chen
|
b950219b0d
|
Fix typo
git-svn-id: file:///home/svn/framework3/trunk@12773 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 21:06:56 +00:00 |
Wei Chen
|
4d044ee592
|
Added 7-Technologies IGSS 9.0 Write File / EXE packet handling exploit
git-svn-id: file:///home/svn/framework3/trunk@12772 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 21:00:49 +00:00 |
HD Moore
|
3e0f3639ef
|
This adds a quick windows/loadlibrary payload for folks who have a need for such things. The library path can be a UNC location and works fine over WebDAV...
git-svn-id: file:///home/svn/framework3/trunk@12765 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 03:44:59 +00:00 |
James Lee
|
5b91eadb87
|
fix the string replacement and do it at setup time instead of for every request
git-svn-id: file:///home/svn/framework3/trunk@12747 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-27 19:36:12 +00:00 |
James Lee
|
cd3f306ef2
|
clarify info a bit; make APPLETNAME option actually do something.
git-svn-id: file:///home/svn/framework3/trunk@12746 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-27 19:13:47 +00:00 |
Jonathan Cran
|
ef7a7adc1e
|
escape slashes, thanks aushack
git-svn-id: file:///home/svn/framework3/trunk@12738 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-27 06:14:52 +00:00 |
James Lee
|
5a54a408f5
|
stupid debugging stuff
git-svn-id: file:///home/svn/framework3/trunk@12736 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-26 19:10:54 +00:00 |
James Lee
|
c5781ae515
|
add support for PKCS12 (.pfx) cert/key files and cert chains in PEM files
git-svn-id: file:///home/svn/framework3/trunk@12735 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-26 17:52:12 +00:00 |
Wei Chen
|
d54f632ea0
|
Add print_status() as requested by author
git-svn-id: file:///home/svn/framework3/trunk@12726 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 23:50:05 +00:00 |
Wei Chen
|
eb72982751
|
Fixed a typo for variable res
git-svn-id: file:///home/svn/framework3/trunk@12725 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 23:46:16 +00:00 |
Wei Chen
|
869a6dbbe5
|
Added Rosewill RXS-3211 IP Camera Password Retriever
git-svn-id: file:///home/svn/framework3/trunk@12724 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 22:06:51 +00:00 |
James Lee
|
11a1b5dcad
|
fix the requires for java signing.
git-svn-id: file:///home/svn/framework3/trunk@12719 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 18:02:02 +00:00 |
James Lee
|
812bae9df9
|
add support for signing applets (or any other jar) with openssl. this removes the need for a dependency on RJB
git-svn-id: file:///home/svn/framework3/trunk@12718 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 16:45:20 +00:00 |
Steve Tornio
|
782b1c6dd6
|
add stratsec ref, update disclosure to match public timeline
git-svn-id: file:///home/svn/framework3/trunk@12716 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 13:57:12 +00:00 |
Patrick Webster
|
5617d23635
|
Removed erroneous awstatstotals_multisort print_status.
git-svn-id: file:///home/svn/framework3/trunk@12715 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 10:45:36 +00:00 |
Patrick Webster
|
51ce0dba58
|
Added awstatstotals_multisort exploit module.
git-svn-id: file:///home/svn/framework3/trunk@12714 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 10:42:37 +00:00 |
Wei Chen
|
c1233db428
|
ugh! It's visiwavereport.exe, not visiwave.exe.
git-svn-id: file:///home/svn/framework3/trunk@12711 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 04:48:25 +00:00 |
Wei Chen
|
0c60fe5a4b
|
Couldn't help but patch-diff it and updated the description again
git-svn-id: file:///home/svn/framework3/trunk@12710 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-25 04:45:17 +00:00 |
Wei Chen
|
6b6c6b2f64
|
We're actually not using 'Ret', it is removed.
git-svn-id: file:///home/svn/framework3/trunk@12706 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-24 23:15:06 +00:00 |
Wei Chen
|
af4b8bfef6
|
RCA done, the new description explains what really happens that causes the vulnerability.
git-svn-id: file:///home/svn/framework3/trunk@12705 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-24 22:58:10 +00:00 |
Tod Beardsley
|
81e1b41840
|
Fixes #4578. If the user has Nokogiri of a reasonable version installed, use that to parse Nmap-created XML documents. Otherwise, fall back to the existing REXML parser.
git-svn-id: file:///home/svn/framework3/trunk@12702 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-24 19:40:50 +00:00 |
Wei Chen
|
f80c66ee8f
|
Disclosure date is actually May 10 2011, confirmed by Mr_Me.
git-svn-id: file:///home/svn/framework3/trunk@12698 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 23:55:03 +00:00 |
Steve Tornio
|
fd6a3def6e
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12695 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 19:50:57 +00:00 |
James Lee
|
ef48240606
|
Make it obvious which exploit is handling a request
git-svn-id: file:///home/svn/framework3/trunk@12693 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 17:05:44 +00:00 |
Wei Chen
|
d900892da8
|
Disclosure date change. '2007' wouldn't make sense now, would it?
git-svn-id: file:///home/svn/framework3/trunk@12692 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 16:30:07 +00:00 |
Wei Chen
|
8089d10618
|
Added VisiWave Site Survey Report buffer overflow exploit
git-svn-id: file:///home/svn/framework3/trunk@12691 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-23 16:28:38 +00:00 |
Steve Tornio
|
28d5febfad
|
add osvdb ref
git-svn-id: file:///home/svn/framework3/trunk@12688 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-22 23:41:15 +00:00 |
Wei Chen
|
e916a61eec
|
Date format fix
git-svn-id: file:///home/svn/framework3/trunk@12685 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-22 22:09:52 +00:00 |
Wei Chen
|
d9c0d1c941
|
Added Magix Musik Maker 16 buffer overflow exploit
git-svn-id: file:///home/svn/framework3/trunk@12684 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-22 22:08:09 +00:00 |