kris
|
9ce45face4
|
add advanced option for setting ipid sample size
git-svn-id: file:///home/svn/framework3/trunk@7197 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 21:22:55 +00:00 |
James Lee
|
f90a222fa0
|
better vnc protocol parsing, fixes #374
git-svn-id: file:///home/svn/framework3/trunk@7196 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:59:35 +00:00 |
HD Moore
|
4ac27c9803
|
Consolidate common APIs into the mixin
git-svn-id: file:///home/svn/framework3/trunk@7195 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:58:01 +00:00 |
et
|
6a818c0c64
|
Fixed #371. Included target information
git-svn-id: file:///home/svn/framework3/trunk@7194 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:51:47 +00:00 |
et
|
6cfd1675c4
|
Fixed #375. Removed the module as frontpage_login provides same information
git-svn-id: file:///home/svn/framework3/trunk@7193 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:45:30 +00:00 |
et
|
c501187ca4
|
Fixed typo #368.
git-svn-id: file:///home/svn/framework3/trunk@7192 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:39:40 +00:00 |
et
|
bfd359f0d8
|
Fixed #367. Adder error code detection and signatures
git-svn-id: file:///home/svn/framework3/trunk@7191 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:37:40 +00:00 |
et
|
f085e7cf59
|
Remove generic modules at this time, until proxy is created and then it can be proxy modules.
git-svn-id: file:///home/svn/framework3/trunk@7190 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:23:33 +00:00 |
et
|
249cc10cf5
|
Fixed #365. Added signatures and error code detection
git-svn-id: file:///home/svn/framework3/trunk@7189 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:18:22 +00:00 |
et
|
814675f952
|
Changed variable name for consistency purposes
git-svn-id: file:///home/svn/framework3/trunk@7188 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 20:01:43 +00:00 |
et
|
dc415c76ca
|
Fixes #364. Added error message detection and signatures
git-svn-id: file:///home/svn/framework3/trunk@7187 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 19:46:30 +00:00 |
James Lee
|
f85c522a07
|
don't try to parse an empty banner, fixes #373
git-svn-id: file:///home/svn/framework3/trunk@7186 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 18:23:19 +00:00 |
HD Moore
|
4d4c0905ef
|
Slightly improved error handling for auxiliary and exploit modules. Improved brute forcing mode for mssql_login. Serious errors (broken code, etc) are bubbled up in auxiliary scanners now. Fixes #384 by reading wordlists one line at a time and not buffering
git-svn-id: file:///home/svn/framework3/trunk@7185 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 18:03:02 +00:00 |
Stephen Fewer
|
e72b347794
|
Add a remote Vista kernel DoS against the srv2.sys driver. This issue was fixed with MS09-050 but does not appear to be referenced in the advisory so was either silently or inadvertently fixed.
git-svn-id: file:///home/svn/framework3/trunk@7184 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 15:41:51 +00:00 |
HD Moore
|
5ea99ac421
|
Remove from the db_autopwn set for now
git-svn-id: file:///home/svn/framework3/trunk@7183 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 09:31:17 +00:00 |
et
|
bee78d3b51
|
First round of fixes for wmap modules
git-svn-id: file:///home/svn/framework3/trunk@7181 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-18 07:10:32 +00:00 |
HD Moore
|
d3aa513773
|
Fixes #339. Cleans up author names for the most part - there are still some stragglers, but this should fix up the frequent contributors
git-svn-id: file:///home/svn/framework3/trunk@7173 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-17 05:55:15 +00:00 |
Mario Ceballos
|
378b7f29d5
|
added exploit modules talkative_response.rb, blazedvd_plf.rb, vuplayer_cue.rb and vuplayer_m3u.rb
git-svn-id: file:///home/svn/framework3/trunk@7170 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-16 17:02:44 +00:00 |
Mario Ceballos
|
37fa36ed12
|
fix a typo.
git-svn-id: file:///home/svn/framework3/trunk@7169 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-16 16:51:16 +00:00 |
Mario Ceballos
|
7e1c769eef
|
added exploit modules poppeeper_uidl.rb and poppeeper_date.rb
git-svn-id: file:///home/svn/framework3/trunk@7168 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 18:04:58 +00:00 |
Mario Ceballos
|
62dc4c74d7
|
added activepdf_webgrabber.rb, etrust_pestscan.rb, ea_checkrequirements.rb and mcafee_hercules_deletesnapshot.rb exploit modules.
git-svn-id: file:///home/svn/framework3/trunk@7167 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 15:22:16 +00:00 |
HD Moore
|
90504e3ea7
|
Fix email formatting
git-svn-id: file:///home/svn/framework3/trunk@7165 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 12:29:07 +00:00 |
HD Moore
|
6e95d1f637
|
Detect when xp_cmdshell is disabled and re-enable it
git-svn-id: file:///home/svn/framework3/trunk@7164 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 12:14:28 +00:00 |
HD Moore
|
c4bfae59aa
|
Minor cleanups
git-svn-id: file:///home/svn/framework3/trunk@7163 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 01:44:00 +00:00 |
HD Moore
|
59676df4db
|
Adds ReL1K's mssql_payload module
git-svn-id: file:///home/svn/framework3/trunk@7162 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 21:11:28 +00:00 |
HD Moore
|
cd2968a32a
|
Updated mssql_sql and backend mixin, can handle most column types and is somewhat usable as a mssql client
git-svn-id: file:///home/svn/framework3/trunk@7159 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 17:41:12 +00:00 |
Mario Ceballos
|
aae4ac74c1
|
more adjusting of the cve entries.
git-svn-id: file:///home/svn/framework3/trunk@7157 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 12:56:13 +00:00 |
Mario Ceballos
|
8e365c17fa
|
fixed the cve entrys.
git-svn-id: file:///home/svn/framework3/trunk@7156 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 11:45:14 +00:00 |
Mario Ceballos
|
aee16a85ab
|
fixed the cve entry.
git-svn-id: file:///home/svn/framework3/trunk@7155 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 11:28:50 +00:00 |
HD Moore
|
a782a68c42
|
Complete overhaul of the MSSQL API, fixes 1.9 compat issues and makes the MSSQL testing easier
git-svn-id: file:///home/svn/framework3/trunk@7154 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-13 22:24:47 +00:00 |
Mario Ceballos
|
63ad9ebf27
|
added exploit module aol_icq_downloadagent.rb
git-svn-id: file:///home/svn/framework3/trunk@7153 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-13 17:04:05 +00:00 |
HD Moore
|
5d9f3323e8
|
Last two reference updates from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@7150 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 14:42:51 +00:00 |
HD Moore
|
26db223636
|
OSVDB reference update from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@7149 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 14:39:51 +00:00 |
Mario Ceballos
|
a8ccd1fe98
|
updated references with bid/cve.
git-svn-id: file:///home/svn/framework3/trunk@7148 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 12:39:15 +00:00 |
Mario Ceballos
|
5b6f16a0f9
|
added exploit modules athocgov_completeinstallation.rb and symantec_iao.rb
git-svn-id: file:///home/svn/framework3/trunk@7147 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 12:31:52 +00:00 |
et
|
09ec91d9bf
|
Use name convention
git-svn-id: file:///home/svn/framework3/trunk@7146 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 23:07:34 +00:00 |
et
|
c14bd99aff
|
Base for an error based sql inj. scanner
git-svn-id: file:///home/svn/framework3/trunk@7145 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 22:52:54 +00:00 |
et
|
95bf9f84f7
|
Basic robots scanner for wmap
git-svn-id: file:///home/svn/framework3/trunk@7144 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 22:48:25 +00:00 |
et
|
97ae32a318
|
Minor display changes
git-svn-id: file:///home/svn/framework3/trunk@7143 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 22:40:57 +00:00 |
et
|
ec00f69e66
|
Subversion scanner
git-svn-id: file:///home/svn/framework3/trunk@7142 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 20:49:34 +00:00 |
Mario Ceballos
|
1cadfa4ea7
|
added exploit module amaya_bdo.rb from dookie.
git-svn-id: file:///home/svn/framework3/trunk@7136 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-10 21:51:25 +00:00 |
HD Moore
|
3d68290b8c
|
Try both snmp1 and snmp2
git-svn-id: file:///home/svn/framework3/trunk@7132 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-06 23:20:36 +00:00 |
kris
|
bd0b0b454e
|
deregister unused (not user-settable) options
git-svn-id: file:///home/svn/framework3/trunk@7130 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-06 05:37:36 +00:00 |
kris
|
f21e3c8754
|
svn:keywords run
git-svn-id: file:///home/svn/framework3/trunk@7128 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-04 23:38:06 +00:00 |
Mario Ceballos
|
65e57f209a
|
added exploit modules xlink_nfsd.rb, xlink_client.rb and xlink_server.rb
git-svn-id: file:///home/svn/framework3/trunk@7123 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-03 23:05:44 +00:00 |
HD Moore
|
b42cc67e54
|
Fixes the ASN.1 parser to work with ruby 1.9.1
git-svn-id: file:///home/svn/framework3/trunk@7121 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-03 19:48:15 +00:00 |
HD Moore
|
e23925ed27
|
Updated the path check to use the Rex method designed for this. Eventually we need to switch this to use zip/filesystem (under lib/)
git-svn-id: file:///home/svn/framework3/trunk@7104 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-01 13:28:38 +00:00 |
James Lee
|
6b8dcdced4
|
add a dependency check for the existence of the zip command. Thanks Donna Hawthorne for the bug report.
git-svn-id: file:///home/svn/framework3/trunk@7102 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-01 05:46:34 +00:00 |
Mario Ceballos
|
3dd0e972e0
|
added exploit module emc_appextender_keyworks.rb
git-svn-id: file:///home/svn/framework3/trunk@7101 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-01 02:13:16 +00:00 |
HD Moore
|
aecbf12b5b
|
Fix up the oracle module, remove syntax error, clean up output, only use one connection
git-svn-id: file:///home/svn/framework3/trunk@7099 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-30 21:44:54 +00:00 |
HD Moore
|
7abd2fe06f
|
Correct tab indents (from spaces), cosmetic fixes, remove useless rescue, spelling fix in description (thanks rmkml!)
git-svn-id: file:///home/svn/framework3/trunk@7098 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-30 21:04:54 +00:00 |
Mario Ceballos
|
acf828461c
|
updated oraenum.rb with an additional wordlist.
git-svn-id: file:///home/svn/framework3/trunk@7093 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-29 21:58:01 +00:00 |
Mario Ceballos
|
b4a291f430
|
added auxiliary module oraenum.rb from Carlos Perez.
git-svn-id: file:///home/svn/framework3/trunk@7088 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 23:13:06 +00:00 |
HD Moore
|
07efe98f6d
|
Whitespace and svn properties set
git-svn-id: file:///home/svn/framework3/trunk@7087 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 10:54:07 +00:00 |
Stephen Fewer
|
360cdaab2e
|
rename the smb2 module to something more specific.
git-svn-id: file:///home/svn/framework3/trunk@7086 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 10:23:28 +00:00 |
Stephen Fewer
|
50bd91688c
|
Add coverage for the SMBv2 vuln.
git-svn-id: file:///home/svn/framework3/trunk@7085 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 08:12:30 +00:00 |
James Lee
|
53e3f166f8
|
make x86/nonupper raise the right exception type, prettify some formatting
git-svn-id: file:///home/svn/framework3/trunk@7083 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 05:23:23 +00:00 |
James Lee
|
bbf2aca050
|
Something about the poly code in jmp_call_additive is busted. Go back to the old static decoder stub until we can figure it out.
git-svn-id: file:///home/svn/framework3/trunk@7082 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 04:56:21 +00:00 |
Mario Ceballos
|
9509872b4f
|
fixed disclosure date and removed cmd residue.
git-svn-id: file:///home/svn/framework3/trunk@7079 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 00:24:18 +00:00 |
cg
|
56d4345830
|
updated options module
git-svn-id: file:///home/svn/framework3/trunk@7078 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 22:42:24 +00:00 |
HD Moore
|
a478c11df0
|
See #339
git-svn-id: file:///home/svn/framework3/trunk@7077 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 21:33:07 +00:00 |
HD Moore
|
5972666f63
|
See #339. Massive cleanup of author names, make them consistent across modules
git-svn-id: file:///home/svn/framework3/trunk@7075 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 21:30:45 +00:00 |
Stephen Fewer
|
53b0709a64
|
commit MC's patch to remove the unused 'req' string.
git-svn-id: file:///home/svn/framework3/trunk@7074 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 19:07:43 +00:00 |
Stephen Fewer
|
c9efd2428c
|
add MC's module for the Adobe RoboHelp server vuln.
git-svn-id: file:///home/svn/framework3/trunk@7072 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 18:38:48 +00:00 |
Stephen Fewer
|
1a220d6dc5
|
add java payload jsp_shell_reverse_tcp.
git-svn-id: file:///home/svn/framework3/trunk@7071 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 18:35:07 +00:00 |
HD Moore
|
af1ed06c1c
|
Fixes #335. Merges change that fixes adobe_pdf_embedded_exe when HOMEPATH != C:\
git-svn-id: file:///home/svn/framework3/trunk@7069 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 15:02:59 +00:00 |
Mario Ceballos
|
e715789e7c
|
fix the option description.
git-svn-id: file:///home/svn/framework3/trunk@7065 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-26 12:01:51 +00:00 |
Mario Ceballos
|
c4594f396f
|
added auxiliary module timbuktu_udp.rb and exploit module timbuktu_fileupload.rb
git-svn-id: file:///home/svn/framework3/trunk@7062 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-26 00:04:00 +00:00 |
James Lee
|
6a7a023844
|
I will not commit when sleep deprived. I will not commit when sleep deprived. I will not commit...
git-svn-id: file:///home/svn/framework3/trunk@7061 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 06:40:42 +00:00 |
James Lee
|
bc2c38c332
|
shave an instruction from the new allports stager
git-svn-id: file:///home/svn/framework3/trunk@7060 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 06:13:13 +00:00 |
HD Moore
|
b47b46e7c0
|
Set keywords
git-svn-id: file:///home/svn/framework3/trunk@7059 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 05:45:03 +00:00 |
HD Moore
|
ee9a8f4f76
|
Adds support for the reverse_tcp_allports stager for Windows. This payload tries to connect back on all ports, one at a time, from LPORT to 65535. This is incredibly slow (depends on the default socket timeout) and requires the user to forward all TCP ports of LHOST to a single listening port in the handler. Inspired by a few user requests and this blog post: http://clinicallyawesome.com/post/196352889/blind-connect-back-through-restrictive-firewall
git-svn-id: file:///home/svn/framework3/trunk@7058 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 05:44:50 +00:00 |
HD Moore
|
b9138f80df
|
Allow the user to set the interface name for scanning, this needs to get merged into the capture mixin, but this solves it for now.
git-svn-id: file:///home/svn/framework3/trunk@7055 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-24 03:34:04 +00:00 |
HD Moore
|
7d122ceb02
|
Fixes #269. Specifically wrap EOFError
git-svn-id: file:///home/svn/framework3/trunk@7045 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-20 19:49:03 +00:00 |
HD Moore
|
532d80b7df
|
Fix modules - unpack('s') breaks on big-endian, lots of formatting issues
git-svn-id: file:///home/svn/framework3/trunk@7042 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-19 17:24:29 +00:00 |
Patrick Webster
|
5f650c0751
|
Added HP Web JetAdmin aux command exec module.
git-svn-id: file:///home/svn/framework3/trunk@7041 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-19 00:33:44 +00:00 |
Patrick Webster
|
b0c9e8b8e5
|
Added BigAnt 2.5 exploit module from Dr_IDE.
git-svn-id: file:///home/svn/framework3/trunk@7039 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-17 17:04:47 +00:00 |
Mario Ceballos
|
e0e9ad670f
|
added auxiliary module osb_execqr2.rb
git-svn-id: file:///home/svn/framework3/trunk@7038 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-16 12:07:07 +00:00 |
HD Moore
|
110e89fd19
|
Fix a raise() call that was printing a warning with Ruby 1.8.6
git-svn-id: file:///home/svn/framework3/trunk@7036 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-14 18:46:41 +00:00 |
James Lee
|
e30e850ba7
|
shave a few bytes off of the windows stagers
git-svn-id: file:///home/svn/framework3/trunk@7035 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-14 08:45:01 +00:00 |
HD Moore
|
41aa5baa6d
|
Fix the check for verbose flag
git-svn-id: file:///home/svn/framework3/trunk@7033 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 15:43:08 +00:00 |
HD Moore
|
0885a7262e
|
Merge the DECT code from DK, clean some things up
git-svn-id: file:///home/svn/framework3/trunk@7032 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 15:40:33 +00:00 |
Patrick Webster
|
b0d1c2681f
|
Added sendmail_prescan aux dos module.
git-svn-id: file:///home/svn/framework3/trunk@7031 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 10:56:36 +00:00 |
James Lee
|
9ace8f33eb
|
OSVDB references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@7030 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 04:22:58 +00:00 |
James Lee
|
782f830abf
|
make cd work by special-casing it to call chdir()
git-svn-id: file:///home/svn/framework3/trunk@7027 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 06:19:10 +00:00 |
James Lee
|
0f957f236e
|
make cd work by special-casing it to call chdir()
git-svn-id: file:///home/svn/framework3/trunk@7026 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 06:11:47 +00:00 |
James Lee
|
85a4f1b9db
|
add a simple check for the generic php exploits
git-svn-id: file:///home/svn/framework3/trunk@7025 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 05:24:03 +00:00 |
HD Moore
|
185b93bf29
|
Enforce max password length of 14 to avoid a default policy warning about back compat
git-svn-id: file:///home/svn/framework3/trunk@7024 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 03:29:51 +00:00 |
Mario Ceballos
|
13f5e1c2e5
|
added exploit module symantec_altirisdeployment_downloadandinstall.rb
git-svn-id: file:///home/svn/framework3/trunk@7023 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 22:30:01 +00:00 |
HD Moore
|
71d644e72e
|
Fix the Payload->Space to match the new max size limit for the EXE generator. Thanks for catching it MC
git-svn-id: file:///home/svn/framework3/trunk@7022 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 21:23:11 +00:00 |
HD Moore
|
7505a4568f
|
This commit adds a SMB 2.0 scanner - it also reports uptime and dialect version
git-svn-id: file:///home/svn/framework3/trunk@7021 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:51:06 +00:00 |
Patrick Webster
|
086d5daaba
|
Try again :)
git-svn-id: file:///home/svn/framework3/trunk@7020 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:20:10 +00:00 |
Patrick Webster
|
d1268286f0
|
Renamed to correct spelling based on the SAP service.
git-svn-id: file:///home/svn/framework3/trunk@7019 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:01:25 +00:00 |
Patrick Webster
|
63702412b0
|
Added exploit module sap_2005_licence from Jacopo Cervini.
git-svn-id: file:///home/svn/framework3/trunk@7018 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 14:59:34 +00:00 |
HD Moore
|
858d57acdd
|
Updated referencse and description
git-svn-id: file:///home/svn/framework3/trunk@7017 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 13:41:14 +00:00 |
HD Moore
|
a7afd1a6c8
|
Updated referencse and description
git-svn-id: file:///home/svn/framework3/trunk@7016 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 13:34:13 +00:00 |
HD Moore
|
eeefc4dd27
|
Fix a typo
git-svn-id: file:///home/svn/framework3/trunk@7015 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 02:06:46 +00:00 |
HD Moore
|
56b2ab3f63
|
Fix the Space and mistyped StackAdjustment in the metaphish merge
git-svn-id: file:///home/svn/framework3/trunk@7014 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 00:55:13 +00:00 |
HD Moore
|
232ca24b46
|
Updated to make it clear that 2003 is not affected (thanks for the feedback for those who tested)
git-svn-id: file:///home/svn/framework3/trunk@7012 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-08 20:27:41 +00:00 |
HD Moore
|
7006acc1a8
|
Cosmetic cleanup
git-svn-id: file:///home/svn/framework3/trunk@7011 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-08 17:48:12 +00:00 |
HD Moore
|
989989077a
|
Adds a first pass at the new SMB flaw - set the OFFSET variable to test different function table indices. This module contains some offsets/notes from my early attempts at code execution.
git-svn-id: file:///home/svn/framework3/trunk@7010 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-08 17:41:40 +00:00 |
Mario Ceballos
|
c1aa1b5f22
|
updated targets list
git-svn-id: file:///home/svn/framework3/trunk@7006 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-05 14:54:22 +00:00 |
Stephen Fewer
|
40ca641a96
|
Initial commit of the windows x64 meterpreter payloads!
git-svn-id: file:///home/svn/framework3/trunk@6997 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-03 17:47:21 +00:00 |
Mario Ceballos
|
cf0f690e4d
|
added exploit module safenet_ike_11.rb
git-svn-id: file:///home/svn/framework3/trunk@6996 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-02 22:04:35 +00:00 |
Stephen Fewer
|
1184f01742
|
Added Aki Immonen's target for Windows 2000 SP3, thanks Aki!
git-svn-id: file:///home/svn/framework3/trunk@6995 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-02 21:24:34 +00:00 |
HD Moore
|
41ab69c600
|
Updated return address from Stephen Fewer, should work for a wider range now
git-svn-id: file:///home/svn/framework3/trunk@6994 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 17:34:47 +00:00 |
HD Moore
|
251810685f
|
Fix the target patch
git-svn-id: file:///home/svn/framework3/trunk@6993 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 17:22:43 +00:00 |
HD Moore
|
ca22f6fa98
|
Updated patch and return address for better compatibility with more targets
git-svn-id: file:///home/svn/framework3/trunk@6992 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 16:38:52 +00:00 |
HD Moore
|
660ae9444b
|
Adds coverage for Kingcope's new IIS FTP exploit, this is a direct port with minimal changes
git-svn-id: file:///home/svn/framework3/trunk@6991 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 15:01:57 +00:00 |
Patrick Webster
|
ff317936db
|
Added alcatel_omnipcx_mastercgi command execution module.
git-svn-id: file:///home/svn/framework3/trunk@6990 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 03:43:16 +00:00 |
Patrick Webster
|
161406e0a9
|
Added exploit fileformat module Altap Salamander PDB.
git-svn-id: file:///home/svn/framework3/trunk@6988 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-30 02:18:33 +00:00 |
HD Moore
|
e0e72f39b2
|
Fix up dcerpc auditor module to connect/disconnect each uuid (works much better)
git-svn-id: file:///home/svn/framework3/trunk@6986 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-28 18:58:47 +00:00 |
HD Moore
|
cbf64d76bb
|
Audit a TCP service to determine what DCERPC UUIDs are bound
git-svn-id: file:///home/svn/framework3/trunk@6985 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-28 18:51:42 +00:00 |
Mario Ceballos
|
18ebd8f308
|
added exploit module ca_cab.rb
git-svn-id: file:///home/svn/framework3/trunk@6983 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 23:26:31 +00:00 |
HD Moore
|
ab6f955873
|
Remove the extra \ from the c:\ path to the cmd interpreter
git-svn-id: file:///home/svn/framework3/trunk@6981 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 19:51:36 +00:00 |
HD Moore
|
97725a489c
|
Round 3 of x64 support from Stephen Fewer - new payloads!
git-svn-id: file:///home/svn/framework3/trunk@6980 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 19:29:54 +00:00 |
HD Moore
|
882ae5b9dd
|
Adds His0k4's ProFTP 2.9 FTP Client server banner overflow module
git-svn-id: file:///home/svn/framework3/trunk@6975 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-25 16:18:53 +00:00 |
HD Moore
|
56f1dc0e43
|
Fixes #282. Remove extra \n
git-svn-id: file:///home/svn/framework3/trunk@6973 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-25 02:59:50 +00:00 |
HD Moore
|
cf10a62dcc
|
Merge in the beginnings of x64 support from Stephen Fewer
git-svn-id: file:///home/svn/framework3/trunk@6972 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-23 23:47:33 +00:00 |
Mario Ceballos
|
b39742446a
|
patch added for the payload selection. thanks rmkml.
git-svn-id: file:///home/svn/framework3/trunk@6971 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-23 12:40:23 +00:00 |
HD Moore
|
fd0f4ef65b
|
Exploit from Kevin F. for CVE-2009-0695, a remote cmd execution flaw in the Wyse thin client platform.
git-svn-id: file:///home/svn/framework3/trunk@6968 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-19 18:06:03 +00:00 |
HD Moore
|
474ba8860f
|
Merges in Colin's PDF infection code from Black Hat / Defcon
git-svn-id: file:///home/svn/framework3/trunk@6966 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-19 14:44:43 +00:00 |
HD Moore
|
2247b483d9
|
Updated pSnuffle sniffer code from _MAX_
git-svn-id: file:///home/svn/framework3/trunk@6965 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-19 14:07:33 +00:00 |
James Lee
|
e16647db74
|
make sure we're running on opera so we don't 404 on a suspicous-looking url if it isn't
git-svn-id: file:///home/svn/framework3/trunk@6963 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-18 05:10:11 +00:00 |
James Lee
|
bd2da7c12a
|
revert overzealous commit
git-svn-id: file:///home/svn/framework3/trunk@6961 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-18 04:53:35 +00:00 |
James Lee
|
08d50e0a5b
|
fix a bug in colorization where %c gets replaced before %cya; wouldn't have been a problem until colorization gets put back in
git-svn-id: file:///home/svn/framework3/trunk@6960 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-18 04:49:16 +00:00 |
HD Moore
|
b14a4ddf0b
|
Lots of shiny new NTLM goodness from Ryan Linn
git-svn-id: file:///home/svn/framework3/trunk@6958 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-17 20:00:05 +00:00 |
HD Moore
|
7d866442f0
|
Skip encoding when there are no badchars -- temporary solution until the encoders also look at the Compat -> RequiredCmds field.
git-svn-id: file:///home/svn/framework3/trunk@6957 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-17 17:42:39 +00:00 |
druid
|
20102275ce
|
Updated references
git-svn-id: file:///home/svn/framework3/trunk@6956 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-13 22:35:42 +00:00 |
druid
|
0a29ce88c0
|
Added MSB reference
git-svn-id: file:///home/svn/framework3/trunk@6955 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-13 19:25:02 +00:00 |
et
|
5a84e7b47f
|
Racket fix bailiwicked modules
git-svn-id: file:///home/svn/framework3/trunk@6950 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-11 02:49:23 +00:00 |
et
|
d0289671f6
|
Basic generic wmap modules
git-svn-id: file:///home/svn/framework3/trunk@6948 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-10 00:04:01 +00:00 |
et
|
87d59b4512
|
More webdav modules to grab information
git-svn-id: file:///home/svn/framework3/trunk@6947 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-10 00:01:38 +00:00 |
et
|
a92fa0b424
|
Add test case
git-svn-id: file:///home/svn/framework3/trunk@6946 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-09 23:59:44 +00:00 |
James Lee
|
4070c5653b
|
add defanged detection mode. hurray for demoing stuff i haven't committed yet
git-svn-id: file:///home/svn/framework3/trunk@6940 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-06 05:56:24 +00:00 |
Mario Ceballos
|
6743c5f510
|
added a auxiliary module that may help id potential targets for db2rcmd.rb.
git-svn-id: file:///home/svn/framework3/trunk@6938 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-05 21:21:45 +00:00 |
HD Moore
|
7fb18d6e11
|
Add coverage for the new nagios3 cmd execution bug
git-svn-id: file:///home/svn/framework3/trunk@6936 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-04 19:27:50 +00:00 |
HD Moore
|
f84cadd9ea
|
Correct the class/require name
git-svn-id: file:///home/svn/framework3/trunk@6929 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-01 04:02:47 +00:00 |
HD Moore
|
b70dad9186
|
Merge the new stubs for meterpreter on other platforms
git-svn-id: file:///home/svn/framework3/trunk@6928 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-01 03:50:40 +00:00 |
HD Moore
|
296703de77
|
Add the new metsvc singles
git-svn-id: file:///home/svn/framework3/trunk@6927 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-01 03:48:45 +00:00 |
HD Moore
|
b47226797d
|
Updating the whitespace to match the rest of the modules
git-svn-id: file:///home/svn/framework3/trunk@6925 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-31 18:02:14 +00:00 |
HD Moore
|
49b7dcb30c
|
Overhaul of the metasploit payloads from Stephen Fewer - smaller/cleaner/new hashing/support for WinNT 4.0 -> Win7 with size reductions for the stagers and minimal size increases for the singles
git-svn-id: file:///home/svn/framework3/trunk@6922 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-31 17:50:10 +00:00 |
Patrick Webster
|
91faadd782
|
Added juniper_sslvpn_ive_setupdll ActiveX exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6921 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-30 15:47:23 +00:00 |
cg
|
df18371123
|
win32exec and win32upload modules for oracle post exploitation
git-svn-id: file:///home/svn/framework3/trunk@6920 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-29 04:18:08 +00:00 |
James Lee
|
24e1af3f74
|
fix a pastographical error
git-svn-id: file:///home/svn/framework3/trunk@6919 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 15:23:52 +00:00 |
Mario Ceballos
|
7c41522004
|
missed one.
git-svn-id: file:///home/svn/framework3/trunk@6918 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 13:44:50 +00:00 |
Mario Ceballos
|
6bb37bbca5
|
converted the current fileformat modules to use the new mixin. also added a few new ones.
git-svn-id: file:///home/svn/framework3/trunk@6917 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 13:43:37 +00:00 |
James Lee
|
13e54d2924
|
print a useful error message and bail when no exploits are found
git-svn-id: file:///home/svn/framework3/trunk@6916 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 11:29:14 +00:00 |
James Lee
|
c29af0197a
|
make opera_historysearch work in an iframe and speed it up so it is less likely to tip off a user
git-svn-id: file:///home/svn/framework3/trunk@6915 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 11:08:50 +00:00 |
Patrick Webster
|
9080dd1f0d
|
Added references and MSB to unicode bypass modules.
git-svn-id: file:///home/svn/framework3/trunk@6914 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 07:39:34 +00:00 |