HD Moore
|
d3aa513773
|
Fixes #339. Cleans up author names for the most part - there are still some stragglers, but this should fix up the frequent contributors
git-svn-id: file:///home/svn/framework3/trunk@7173 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-17 05:55:15 +00:00 |
Mario Ceballos
|
378b7f29d5
|
added exploit modules talkative_response.rb, blazedvd_plf.rb, vuplayer_cue.rb and vuplayer_m3u.rb
git-svn-id: file:///home/svn/framework3/trunk@7170 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-16 17:02:44 +00:00 |
Mario Ceballos
|
37fa36ed12
|
fix a typo.
git-svn-id: file:///home/svn/framework3/trunk@7169 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-16 16:51:16 +00:00 |
Mario Ceballos
|
7e1c769eef
|
added exploit modules poppeeper_uidl.rb and poppeeper_date.rb
git-svn-id: file:///home/svn/framework3/trunk@7168 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 18:04:58 +00:00 |
Mario Ceballos
|
62dc4c74d7
|
added activepdf_webgrabber.rb, etrust_pestscan.rb, ea_checkrequirements.rb and mcafee_hercules_deletesnapshot.rb exploit modules.
git-svn-id: file:///home/svn/framework3/trunk@7167 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 15:22:16 +00:00 |
HD Moore
|
90504e3ea7
|
Fix email formatting
git-svn-id: file:///home/svn/framework3/trunk@7165 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 12:29:07 +00:00 |
HD Moore
|
6e95d1f637
|
Detect when xp_cmdshell is disabled and re-enable it
git-svn-id: file:///home/svn/framework3/trunk@7164 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 12:14:28 +00:00 |
HD Moore
|
c4bfae59aa
|
Minor cleanups
git-svn-id: file:///home/svn/framework3/trunk@7163 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-15 01:44:00 +00:00 |
HD Moore
|
59676df4db
|
Adds ReL1K's mssql_payload module
git-svn-id: file:///home/svn/framework3/trunk@7162 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 21:11:28 +00:00 |
HD Moore
|
cd2968a32a
|
Updated mssql_sql and backend mixin, can handle most column types and is somewhat usable as a mssql client
git-svn-id: file:///home/svn/framework3/trunk@7159 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 17:41:12 +00:00 |
Mario Ceballos
|
aae4ac74c1
|
more adjusting of the cve entries.
git-svn-id: file:///home/svn/framework3/trunk@7157 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 12:56:13 +00:00 |
Mario Ceballos
|
8e365c17fa
|
fixed the cve entrys.
git-svn-id: file:///home/svn/framework3/trunk@7156 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 11:45:14 +00:00 |
Mario Ceballos
|
aee16a85ab
|
fixed the cve entry.
git-svn-id: file:///home/svn/framework3/trunk@7155 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-14 11:28:50 +00:00 |
HD Moore
|
a782a68c42
|
Complete overhaul of the MSSQL API, fixes 1.9 compat issues and makes the MSSQL testing easier
git-svn-id: file:///home/svn/framework3/trunk@7154 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-13 22:24:47 +00:00 |
Mario Ceballos
|
63ad9ebf27
|
added exploit module aol_icq_downloadagent.rb
git-svn-id: file:///home/svn/framework3/trunk@7153 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-13 17:04:05 +00:00 |
HD Moore
|
5d9f3323e8
|
Last two reference updates from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@7150 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 14:42:51 +00:00 |
HD Moore
|
26db223636
|
OSVDB reference update from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@7149 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 14:39:51 +00:00 |
Mario Ceballos
|
a8ccd1fe98
|
updated references with bid/cve.
git-svn-id: file:///home/svn/framework3/trunk@7148 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 12:39:15 +00:00 |
Mario Ceballos
|
5b6f16a0f9
|
added exploit modules athocgov_completeinstallation.rb and symantec_iao.rb
git-svn-id: file:///home/svn/framework3/trunk@7147 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-12 12:31:52 +00:00 |
et
|
09ec91d9bf
|
Use name convention
git-svn-id: file:///home/svn/framework3/trunk@7146 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 23:07:34 +00:00 |
et
|
c14bd99aff
|
Base for an error based sql inj. scanner
git-svn-id: file:///home/svn/framework3/trunk@7145 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 22:52:54 +00:00 |
et
|
95bf9f84f7
|
Basic robots scanner for wmap
git-svn-id: file:///home/svn/framework3/trunk@7144 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 22:48:25 +00:00 |
et
|
97ae32a318
|
Minor display changes
git-svn-id: file:///home/svn/framework3/trunk@7143 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 22:40:57 +00:00 |
et
|
ec00f69e66
|
Subversion scanner
git-svn-id: file:///home/svn/framework3/trunk@7142 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-11 20:49:34 +00:00 |
Mario Ceballos
|
1cadfa4ea7
|
added exploit module amaya_bdo.rb from dookie.
git-svn-id: file:///home/svn/framework3/trunk@7136 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-10 21:51:25 +00:00 |
HD Moore
|
3d68290b8c
|
Try both snmp1 and snmp2
git-svn-id: file:///home/svn/framework3/trunk@7132 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-06 23:20:36 +00:00 |
kris
|
bd0b0b454e
|
deregister unused (not user-settable) options
git-svn-id: file:///home/svn/framework3/trunk@7130 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-06 05:37:36 +00:00 |
kris
|
f21e3c8754
|
svn:keywords run
git-svn-id: file:///home/svn/framework3/trunk@7128 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-04 23:38:06 +00:00 |
Mario Ceballos
|
65e57f209a
|
added exploit modules xlink_nfsd.rb, xlink_client.rb and xlink_server.rb
git-svn-id: file:///home/svn/framework3/trunk@7123 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-03 23:05:44 +00:00 |
HD Moore
|
b42cc67e54
|
Fixes the ASN.1 parser to work with ruby 1.9.1
git-svn-id: file:///home/svn/framework3/trunk@7121 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-03 19:48:15 +00:00 |
HD Moore
|
e23925ed27
|
Updated the path check to use the Rex method designed for this. Eventually we need to switch this to use zip/filesystem (under lib/)
git-svn-id: file:///home/svn/framework3/trunk@7104 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-01 13:28:38 +00:00 |
James Lee
|
6b8dcdced4
|
add a dependency check for the existence of the zip command. Thanks Donna Hawthorne for the bug report.
git-svn-id: file:///home/svn/framework3/trunk@7102 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-01 05:46:34 +00:00 |
Mario Ceballos
|
3dd0e972e0
|
added exploit module emc_appextender_keyworks.rb
git-svn-id: file:///home/svn/framework3/trunk@7101 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-10-01 02:13:16 +00:00 |
HD Moore
|
aecbf12b5b
|
Fix up the oracle module, remove syntax error, clean up output, only use one connection
git-svn-id: file:///home/svn/framework3/trunk@7099 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-30 21:44:54 +00:00 |
HD Moore
|
7abd2fe06f
|
Correct tab indents (from spaces), cosmetic fixes, remove useless rescue, spelling fix in description (thanks rmkml!)
git-svn-id: file:///home/svn/framework3/trunk@7098 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-30 21:04:54 +00:00 |
Mario Ceballos
|
acf828461c
|
updated oraenum.rb with an additional wordlist.
git-svn-id: file:///home/svn/framework3/trunk@7093 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-29 21:58:01 +00:00 |
Mario Ceballos
|
b4a291f430
|
added auxiliary module oraenum.rb from Carlos Perez.
git-svn-id: file:///home/svn/framework3/trunk@7088 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 23:13:06 +00:00 |
HD Moore
|
07efe98f6d
|
Whitespace and svn properties set
git-svn-id: file:///home/svn/framework3/trunk@7087 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 10:54:07 +00:00 |
Stephen Fewer
|
360cdaab2e
|
rename the smb2 module to something more specific.
git-svn-id: file:///home/svn/framework3/trunk@7086 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 10:23:28 +00:00 |
Stephen Fewer
|
50bd91688c
|
Add coverage for the SMBv2 vuln.
git-svn-id: file:///home/svn/framework3/trunk@7085 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 08:12:30 +00:00 |
James Lee
|
53e3f166f8
|
make x86/nonupper raise the right exception type, prettify some formatting
git-svn-id: file:///home/svn/framework3/trunk@7083 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 05:23:23 +00:00 |
James Lee
|
bbf2aca050
|
Something about the poly code in jmp_call_additive is busted. Go back to the old static decoder stub until we can figure it out.
git-svn-id: file:///home/svn/framework3/trunk@7082 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 04:56:21 +00:00 |
Mario Ceballos
|
9509872b4f
|
fixed disclosure date and removed cmd residue.
git-svn-id: file:///home/svn/framework3/trunk@7079 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-28 00:24:18 +00:00 |
cg
|
56d4345830
|
updated options module
git-svn-id: file:///home/svn/framework3/trunk@7078 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 22:42:24 +00:00 |
HD Moore
|
a478c11df0
|
See #339
git-svn-id: file:///home/svn/framework3/trunk@7077 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 21:33:07 +00:00 |
HD Moore
|
5972666f63
|
See #339. Massive cleanup of author names, make them consistent across modules
git-svn-id: file:///home/svn/framework3/trunk@7075 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 21:30:45 +00:00 |
Stephen Fewer
|
53b0709a64
|
commit MC's patch to remove the unused 'req' string.
git-svn-id: file:///home/svn/framework3/trunk@7074 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 19:07:43 +00:00 |
Stephen Fewer
|
c9efd2428c
|
add MC's module for the Adobe RoboHelp server vuln.
git-svn-id: file:///home/svn/framework3/trunk@7072 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 18:38:48 +00:00 |
Stephen Fewer
|
1a220d6dc5
|
add java payload jsp_shell_reverse_tcp.
git-svn-id: file:///home/svn/framework3/trunk@7071 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 18:35:07 +00:00 |
HD Moore
|
af1ed06c1c
|
Fixes #335. Merges change that fixes adobe_pdf_embedded_exe when HOMEPATH != C:\
git-svn-id: file:///home/svn/framework3/trunk@7069 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-27 15:02:59 +00:00 |
Mario Ceballos
|
e715789e7c
|
fix the option description.
git-svn-id: file:///home/svn/framework3/trunk@7065 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-26 12:01:51 +00:00 |
Mario Ceballos
|
c4594f396f
|
added auxiliary module timbuktu_udp.rb and exploit module timbuktu_fileupload.rb
git-svn-id: file:///home/svn/framework3/trunk@7062 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-26 00:04:00 +00:00 |
James Lee
|
6a7a023844
|
I will not commit when sleep deprived. I will not commit when sleep deprived. I will not commit...
git-svn-id: file:///home/svn/framework3/trunk@7061 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 06:40:42 +00:00 |
James Lee
|
bc2c38c332
|
shave an instruction from the new allports stager
git-svn-id: file:///home/svn/framework3/trunk@7060 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 06:13:13 +00:00 |
HD Moore
|
b47b46e7c0
|
Set keywords
git-svn-id: file:///home/svn/framework3/trunk@7059 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 05:45:03 +00:00 |
HD Moore
|
ee9a8f4f76
|
Adds support for the reverse_tcp_allports stager for Windows. This payload tries to connect back on all ports, one at a time, from LPORT to 65535. This is incredibly slow (depends on the default socket timeout) and requires the user to forward all TCP ports of LHOST to a single listening port in the handler. Inspired by a few user requests and this blog post: http://clinicallyawesome.com/post/196352889/blind-connect-back-through-restrictive-firewall
git-svn-id: file:///home/svn/framework3/trunk@7058 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-25 05:44:50 +00:00 |
HD Moore
|
b9138f80df
|
Allow the user to set the interface name for scanning, this needs to get merged into the capture mixin, but this solves it for now.
git-svn-id: file:///home/svn/framework3/trunk@7055 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-24 03:34:04 +00:00 |
HD Moore
|
7d122ceb02
|
Fixes #269. Specifically wrap EOFError
git-svn-id: file:///home/svn/framework3/trunk@7045 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-20 19:49:03 +00:00 |
HD Moore
|
532d80b7df
|
Fix modules - unpack('s') breaks on big-endian, lots of formatting issues
git-svn-id: file:///home/svn/framework3/trunk@7042 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-19 17:24:29 +00:00 |
Patrick Webster
|
5f650c0751
|
Added HP Web JetAdmin aux command exec module.
git-svn-id: file:///home/svn/framework3/trunk@7041 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-19 00:33:44 +00:00 |
Patrick Webster
|
b0c9e8b8e5
|
Added BigAnt 2.5 exploit module from Dr_IDE.
git-svn-id: file:///home/svn/framework3/trunk@7039 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-17 17:04:47 +00:00 |
Mario Ceballos
|
e0e9ad670f
|
added auxiliary module osb_execqr2.rb
git-svn-id: file:///home/svn/framework3/trunk@7038 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-16 12:07:07 +00:00 |
HD Moore
|
110e89fd19
|
Fix a raise() call that was printing a warning with Ruby 1.8.6
git-svn-id: file:///home/svn/framework3/trunk@7036 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-14 18:46:41 +00:00 |
James Lee
|
e30e850ba7
|
shave a few bytes off of the windows stagers
git-svn-id: file:///home/svn/framework3/trunk@7035 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-14 08:45:01 +00:00 |
HD Moore
|
41aa5baa6d
|
Fix the check for verbose flag
git-svn-id: file:///home/svn/framework3/trunk@7033 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 15:43:08 +00:00 |
HD Moore
|
0885a7262e
|
Merge the DECT code from DK, clean some things up
git-svn-id: file:///home/svn/framework3/trunk@7032 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 15:40:33 +00:00 |
Patrick Webster
|
b0d1c2681f
|
Added sendmail_prescan aux dos module.
git-svn-id: file:///home/svn/framework3/trunk@7031 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 10:56:36 +00:00 |
James Lee
|
9ace8f33eb
|
OSVDB references from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@7030 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-12 04:22:58 +00:00 |
James Lee
|
782f830abf
|
make cd work by special-casing it to call chdir()
git-svn-id: file:///home/svn/framework3/trunk@7027 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 06:19:10 +00:00 |
James Lee
|
0f957f236e
|
make cd work by special-casing it to call chdir()
git-svn-id: file:///home/svn/framework3/trunk@7026 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 06:11:47 +00:00 |
James Lee
|
85a4f1b9db
|
add a simple check for the generic php exploits
git-svn-id: file:///home/svn/framework3/trunk@7025 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 05:24:03 +00:00 |
HD Moore
|
185b93bf29
|
Enforce max password length of 14 to avoid a default policy warning about back compat
git-svn-id: file:///home/svn/framework3/trunk@7024 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-10 03:29:51 +00:00 |
Mario Ceballos
|
13f5e1c2e5
|
added exploit module symantec_altirisdeployment_downloadandinstall.rb
git-svn-id: file:///home/svn/framework3/trunk@7023 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 22:30:01 +00:00 |
HD Moore
|
71d644e72e
|
Fix the Payload->Space to match the new max size limit for the EXE generator. Thanks for catching it MC
git-svn-id: file:///home/svn/framework3/trunk@7022 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 21:23:11 +00:00 |
HD Moore
|
7505a4568f
|
This commit adds a SMB 2.0 scanner - it also reports uptime and dialect version
git-svn-id: file:///home/svn/framework3/trunk@7021 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:51:06 +00:00 |
Patrick Webster
|
086d5daaba
|
Try again :)
git-svn-id: file:///home/svn/framework3/trunk@7020 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:20:10 +00:00 |
Patrick Webster
|
d1268286f0
|
Renamed to correct spelling based on the SAP service.
git-svn-id: file:///home/svn/framework3/trunk@7019 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 15:01:25 +00:00 |
Patrick Webster
|
63702412b0
|
Added exploit module sap_2005_licence from Jacopo Cervini.
git-svn-id: file:///home/svn/framework3/trunk@7018 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 14:59:34 +00:00 |
HD Moore
|
858d57acdd
|
Updated referencse and description
git-svn-id: file:///home/svn/framework3/trunk@7017 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 13:41:14 +00:00 |
HD Moore
|
a7afd1a6c8
|
Updated referencse and description
git-svn-id: file:///home/svn/framework3/trunk@7016 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 13:34:13 +00:00 |
HD Moore
|
eeefc4dd27
|
Fix a typo
git-svn-id: file:///home/svn/framework3/trunk@7015 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 02:06:46 +00:00 |
HD Moore
|
56b2ab3f63
|
Fix the Space and mistyped StackAdjustment in the metaphish merge
git-svn-id: file:///home/svn/framework3/trunk@7014 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-09 00:55:13 +00:00 |
HD Moore
|
232ca24b46
|
Updated to make it clear that 2003 is not affected (thanks for the feedback for those who tested)
git-svn-id: file:///home/svn/framework3/trunk@7012 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-08 20:27:41 +00:00 |
HD Moore
|
7006acc1a8
|
Cosmetic cleanup
git-svn-id: file:///home/svn/framework3/trunk@7011 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-08 17:48:12 +00:00 |
HD Moore
|
989989077a
|
Adds a first pass at the new SMB flaw - set the OFFSET variable to test different function table indices. This module contains some offsets/notes from my early attempts at code execution.
git-svn-id: file:///home/svn/framework3/trunk@7010 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-08 17:41:40 +00:00 |
Mario Ceballos
|
c1aa1b5f22
|
updated targets list
git-svn-id: file:///home/svn/framework3/trunk@7006 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-05 14:54:22 +00:00 |
Stephen Fewer
|
40ca641a96
|
Initial commit of the windows x64 meterpreter payloads!
git-svn-id: file:///home/svn/framework3/trunk@6997 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-03 17:47:21 +00:00 |
Mario Ceballos
|
cf0f690e4d
|
added exploit module safenet_ike_11.rb
git-svn-id: file:///home/svn/framework3/trunk@6996 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-02 22:04:35 +00:00 |
Stephen Fewer
|
1184f01742
|
Added Aki Immonen's target for Windows 2000 SP3, thanks Aki!
git-svn-id: file:///home/svn/framework3/trunk@6995 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-02 21:24:34 +00:00 |
HD Moore
|
41ab69c600
|
Updated return address from Stephen Fewer, should work for a wider range now
git-svn-id: file:///home/svn/framework3/trunk@6994 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 17:34:47 +00:00 |
HD Moore
|
251810685f
|
Fix the target patch
git-svn-id: file:///home/svn/framework3/trunk@6993 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 17:22:43 +00:00 |
HD Moore
|
ca22f6fa98
|
Updated patch and return address for better compatibility with more targets
git-svn-id: file:///home/svn/framework3/trunk@6992 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 16:38:52 +00:00 |
HD Moore
|
660ae9444b
|
Adds coverage for Kingcope's new IIS FTP exploit, this is a direct port with minimal changes
git-svn-id: file:///home/svn/framework3/trunk@6991 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 15:01:57 +00:00 |
Patrick Webster
|
ff317936db
|
Added alcatel_omnipcx_mastercgi command execution module.
git-svn-id: file:///home/svn/framework3/trunk@6990 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-09-01 03:43:16 +00:00 |
Patrick Webster
|
161406e0a9
|
Added exploit fileformat module Altap Salamander PDB.
git-svn-id: file:///home/svn/framework3/trunk@6988 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-30 02:18:33 +00:00 |
HD Moore
|
e0e72f39b2
|
Fix up dcerpc auditor module to connect/disconnect each uuid (works much better)
git-svn-id: file:///home/svn/framework3/trunk@6986 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-28 18:58:47 +00:00 |
HD Moore
|
cbf64d76bb
|
Audit a TCP service to determine what DCERPC UUIDs are bound
git-svn-id: file:///home/svn/framework3/trunk@6985 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-28 18:51:42 +00:00 |
Mario Ceballos
|
18ebd8f308
|
added exploit module ca_cab.rb
git-svn-id: file:///home/svn/framework3/trunk@6983 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 23:26:31 +00:00 |
HD Moore
|
ab6f955873
|
Remove the extra \ from the c:\ path to the cmd interpreter
git-svn-id: file:///home/svn/framework3/trunk@6981 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 19:51:36 +00:00 |
HD Moore
|
97725a489c
|
Round 3 of x64 support from Stephen Fewer - new payloads!
git-svn-id: file:///home/svn/framework3/trunk@6980 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-27 19:29:54 +00:00 |
HD Moore
|
882ae5b9dd
|
Adds His0k4's ProFTP 2.9 FTP Client server banner overflow module
git-svn-id: file:///home/svn/framework3/trunk@6975 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-25 16:18:53 +00:00 |
HD Moore
|
56f1dc0e43
|
Fixes #282. Remove extra \n
git-svn-id: file:///home/svn/framework3/trunk@6973 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-25 02:59:50 +00:00 |
HD Moore
|
cf10a62dcc
|
Merge in the beginnings of x64 support from Stephen Fewer
git-svn-id: file:///home/svn/framework3/trunk@6972 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-23 23:47:33 +00:00 |
Mario Ceballos
|
b39742446a
|
patch added for the payload selection. thanks rmkml.
git-svn-id: file:///home/svn/framework3/trunk@6971 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-23 12:40:23 +00:00 |
HD Moore
|
fd0f4ef65b
|
Exploit from Kevin F. for CVE-2009-0695, a remote cmd execution flaw in the Wyse thin client platform.
git-svn-id: file:///home/svn/framework3/trunk@6968 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-19 18:06:03 +00:00 |
HD Moore
|
474ba8860f
|
Merges in Colin's PDF infection code from Black Hat / Defcon
git-svn-id: file:///home/svn/framework3/trunk@6966 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-19 14:44:43 +00:00 |
HD Moore
|
2247b483d9
|
Updated pSnuffle sniffer code from _MAX_
git-svn-id: file:///home/svn/framework3/trunk@6965 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-19 14:07:33 +00:00 |
James Lee
|
e16647db74
|
make sure we're running on opera so we don't 404 on a suspicous-looking url if it isn't
git-svn-id: file:///home/svn/framework3/trunk@6963 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-18 05:10:11 +00:00 |
James Lee
|
bd2da7c12a
|
revert overzealous commit
git-svn-id: file:///home/svn/framework3/trunk@6961 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-18 04:53:35 +00:00 |
James Lee
|
08d50e0a5b
|
fix a bug in colorization where %c gets replaced before %cya; wouldn't have been a problem until colorization gets put back in
git-svn-id: file:///home/svn/framework3/trunk@6960 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-18 04:49:16 +00:00 |
HD Moore
|
b14a4ddf0b
|
Lots of shiny new NTLM goodness from Ryan Linn
git-svn-id: file:///home/svn/framework3/trunk@6958 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-17 20:00:05 +00:00 |
HD Moore
|
7d866442f0
|
Skip encoding when there are no badchars -- temporary solution until the encoders also look at the Compat -> RequiredCmds field.
git-svn-id: file:///home/svn/framework3/trunk@6957 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-17 17:42:39 +00:00 |
druid
|
20102275ce
|
Updated references
git-svn-id: file:///home/svn/framework3/trunk@6956 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-13 22:35:42 +00:00 |
druid
|
0a29ce88c0
|
Added MSB reference
git-svn-id: file:///home/svn/framework3/trunk@6955 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-13 19:25:02 +00:00 |
et
|
5a84e7b47f
|
Racket fix bailiwicked modules
git-svn-id: file:///home/svn/framework3/trunk@6950 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-11 02:49:23 +00:00 |
et
|
d0289671f6
|
Basic generic wmap modules
git-svn-id: file:///home/svn/framework3/trunk@6948 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-10 00:04:01 +00:00 |
et
|
87d59b4512
|
More webdav modules to grab information
git-svn-id: file:///home/svn/framework3/trunk@6947 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-10 00:01:38 +00:00 |
et
|
a92fa0b424
|
Add test case
git-svn-id: file:///home/svn/framework3/trunk@6946 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-09 23:59:44 +00:00 |
James Lee
|
4070c5653b
|
add defanged detection mode. hurray for demoing stuff i haven't committed yet
git-svn-id: file:///home/svn/framework3/trunk@6940 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-06 05:56:24 +00:00 |
Mario Ceballos
|
6743c5f510
|
added a auxiliary module that may help id potential targets for db2rcmd.rb.
git-svn-id: file:///home/svn/framework3/trunk@6938 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-05 21:21:45 +00:00 |
HD Moore
|
7fb18d6e11
|
Add coverage for the new nagios3 cmd execution bug
git-svn-id: file:///home/svn/framework3/trunk@6936 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-04 19:27:50 +00:00 |
HD Moore
|
f84cadd9ea
|
Correct the class/require name
git-svn-id: file:///home/svn/framework3/trunk@6929 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-01 04:02:47 +00:00 |
HD Moore
|
b70dad9186
|
Merge the new stubs for meterpreter on other platforms
git-svn-id: file:///home/svn/framework3/trunk@6928 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-01 03:50:40 +00:00 |
HD Moore
|
296703de77
|
Add the new metsvc singles
git-svn-id: file:///home/svn/framework3/trunk@6927 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-08-01 03:48:45 +00:00 |
HD Moore
|
b47226797d
|
Updating the whitespace to match the rest of the modules
git-svn-id: file:///home/svn/framework3/trunk@6925 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-31 18:02:14 +00:00 |
HD Moore
|
49b7dcb30c
|
Overhaul of the metasploit payloads from Stephen Fewer - smaller/cleaner/new hashing/support for WinNT 4.0 -> Win7 with size reductions for the stagers and minimal size increases for the singles
git-svn-id: file:///home/svn/framework3/trunk@6922 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-31 17:50:10 +00:00 |
Patrick Webster
|
91faadd782
|
Added juniper_sslvpn_ive_setupdll ActiveX exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6921 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-30 15:47:23 +00:00 |
cg
|
df18371123
|
win32exec and win32upload modules for oracle post exploitation
git-svn-id: file:///home/svn/framework3/trunk@6920 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-29 04:18:08 +00:00 |
James Lee
|
24e1af3f74
|
fix a pastographical error
git-svn-id: file:///home/svn/framework3/trunk@6919 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 15:23:52 +00:00 |
Mario Ceballos
|
7c41522004
|
missed one.
git-svn-id: file:///home/svn/framework3/trunk@6918 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 13:44:50 +00:00 |
Mario Ceballos
|
6bb37bbca5
|
converted the current fileformat modules to use the new mixin. also added a few new ones.
git-svn-id: file:///home/svn/framework3/trunk@6917 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 13:43:37 +00:00 |
James Lee
|
13e54d2924
|
print a useful error message and bail when no exploits are found
git-svn-id: file:///home/svn/framework3/trunk@6916 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 11:29:14 +00:00 |
James Lee
|
c29af0197a
|
make opera_historysearch work in an iframe and speed it up so it is less likely to tip off a user
git-svn-id: file:///home/svn/framework3/trunk@6915 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 11:08:50 +00:00 |
Patrick Webster
|
9080dd1f0d
|
Added references and MSB to unicode bypass modules.
git-svn-id: file:///home/svn/framework3/trunk@6914 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 07:39:34 +00:00 |
James Lee
|
0b9412536c
|
untested autopwn support for safari_metadata_archive just to have a safari vuln in the mix
git-svn-id: file:///home/svn/framework3/trunk@6913 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 06:38:01 +00:00 |
Ramon de C Valle
|
0d8ea98cdf
|
Added AIX SNMP Scanner Auxiliary Module.
git-svn-id: file:///home/svn/framework3/trunk@6912 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 04:48:36 +00:00 |
Ramon de C Valle
|
b5769ead52
|
Small corrections.
git-svn-id: file:///home/svn/framework3/trunk@6911 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-28 04:46:57 +00:00 |
HD Moore
|
876a80f601
|
Updated osvdb references from Steve Tornio, updated capture/eth_spoof modules
git-svn-id: file:///home/svn/framework3/trunk@6907 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-27 14:05:23 +00:00 |
James Lee
|
9c9669f5d9
|
add php/download_exec and remove an erroneous comment from windows/download_exec
git-svn-id: file:///home/svn/framework3/trunk@6905 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-26 23:08:31 +00:00 |
HD Moore
|
021e4c7fe1
|
Dont spoof the apple status page, better off exploiting the browser popup
git-svn-id: file:///home/svn/framework3/trunk@6902 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-26 05:31:29 +00:00 |
cg
|
9377a10094
|
updated description of module
git-svn-id: file:///home/svn/framework3/trunk@6900 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-25 18:49:26 +00:00 |
HD Moore
|
861f35979e
|
Allow for basic authentication and access control in the FTP server module
git-svn-id: file:///home/svn/framework3/trunk@6896 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-25 04:18:37 +00:00 |
kris
|
466e8fe555
|
include dos mixin
git-svn-id: file:///home/svn/framework3/trunk@6890 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-24 21:01:38 +00:00 |
HD Moore
|
ad68502ef6
|
Add credit to the milw0rm exploit author
git-svn-id: file:///home/svn/framework3/trunk@6886 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 11:51:24 +00:00 |
HD Moore
|
b1c40fb3ac
|
Apply a patch to arp_sweep to record the mac of the hosts
git-svn-id: file:///home/svn/framework3/trunk@6885 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 11:47:10 +00:00 |
HD Moore
|
ed024f82aa
|
Remove the extraneous \r\n (thanks Shuyao!)
git-svn-id: file:///home/svn/framework3/trunk@6884 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 11:45:32 +00:00 |
James Lee
|
b386afb4da
|
get rid of debug printing
git-svn-id: file:///home/svn/framework3/trunk@6883 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 09:58:13 +00:00 |
James Lee
|
e805bbc3aa
|
remove stupid debug alert
git-svn-id: file:///home/svn/framework3/trunk@6882 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 08:58:51 +00:00 |
James Lee
|
a467fdded7
|
allow autopwn sploits to specify compatible os as an array; minor refactor
git-svn-id: file:///home/svn/framework3/trunk@6881 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 08:43:54 +00:00 |
kris
|
7262621d35
|
switch 'Version' Rev to Revision since msf doesn't handle it correctly
git-svn-id: file:///home/svn/framework3/trunk@6877 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 03:06:01 +00:00 |
kris
|
d3e65b3363
|
svn:keywords run
git-svn-id: file:///home/svn/framework3/trunk@6876 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-23 02:55:51 +00:00 |
James Lee
|
739207bf4a
|
merge browser_autopwn back into trunk. This changes the database schema slightly, so make sure to db_destroy and db_create before using the database features.
git-svn-id: file:///home/svn/framework3/trunk@6873 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 20:14:35 +00:00 |
James Lee
|
750a432fd0
|
fix calls to new to_win32pe with correct number of arguments
git-svn-id: file:///home/svn/framework3/trunk@6872 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 19:23:21 +00:00 |
HD Moore
|
ad3e559ff9
|
Adds a working FTP server module
git-svn-id: file:///home/svn/framework3/trunk@6871 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 19:10:45 +00:00 |
HD Moore
|
4c4a8a764c
|
Let the XP SP0/SP1 and 2000 targets automatically run
git-svn-id: file:///home/svn/framework3/trunk@6865 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 12:59:08 +00:00 |
HD Moore
|
54fc8e70e2
|
Fixed spurious next
git-svn-id: file:///home/svn/framework3/trunk@6861 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 02:56:40 +00:00 |
HD Moore
|
ff9efe45bc
|
Fixed spurious next
git-svn-id: file:///home/svn/framework3/trunk@6860 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-22 02:48:00 +00:00 |
HD Moore
|
e70ac6cc19
|
Added a new set of match flags for cmd injection exploits (RequiredCmds). This reduces the number of 'bad' payloads listed for explot modules. A good example is disabling the netcat -e payloads for old Solaris exploits
git-svn-id: file:///home/svn/framework3/trunk@6854 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-21 15:20:35 +00:00 |
HD Moore
|
47ebd62092
|
Adds coverage for the DD-WRT web interface command execution flaw, adds two netcat -e payloads to work with it
git-svn-id: file:///home/svn/framework3/trunk@6852 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-21 12:56:42 +00:00 |
HD Moore
|
8ad948c127
|
Demonstrate how to send raw ethernet frames
git-svn-id: file:///home/svn/framework3/trunk@6851 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-21 10:54:24 +00:00 |
Mario Ceballos
|
4691f2b0e5
|
added exploit module netidentity_xtierrpcpipe.rb
git-svn-id: file:///home/svn/framework3/trunk@6850 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-21 01:04:48 +00:00 |
HD Moore
|
17d6de4247
|
Adds a reverse_tcp for metsvc
git-svn-id: file:///home/svn/framework3/trunk@6848 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-19 20:51:58 +00:00 |
James Lee
|
529ded22ae
|
reverting last commit; somebody didn't cross their fingers
git-svn-id: file:///home/svn/framework3/trunk@6847 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-19 20:48:47 +00:00 |
James Lee
|
c3dc1ecb55
|
reintegrate browser_autopwn into trunk; cross your fingers and hope this works
git-svn-id: file:///home/svn/framework3/trunk@6846 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-19 17:27:36 +00:00 |
HD Moore
|
e7eb7235a7
|
Fixes #298. Thanks Shiyee!
git-svn-id: file:///home/svn/framework3/trunk@6845 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-19 16:07:59 +00:00 |
HD Moore
|
309acbaa22
|
Remove extraneous comma
git-svn-id: file:///home/svn/framework3/trunk@6833 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-18 00:27:15 +00:00 |
HD Moore
|
282bcb4fae
|
Updated with osvdb and bid references.
git-svn-id: file:///home/svn/framework3/trunk@6832 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-18 00:15:48 +00:00 |
HD Moore
|
2d319e9b5b
|
Updated to work better on OS X and avoid 'script is taking too long' errors on all platforms
git-svn-id: file:///home/svn/framework3/trunk@6830 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-17 23:57:59 +00:00 |
HD Moore
|
99bc63b11d
|
Adds support for Mac OS X intel (use the vforkshell payloads)
git-svn-id: file:///home/svn/framework3/trunk@6828 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-17 21:28:59 +00:00 |
HD Moore
|
7dcc3e5e47
|
Overhaul of all modules to use racket instead of scruby/packetfu
git-svn-id: file:///home/svn/framework3/trunk@6823 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-17 20:36:40 +00:00 |
Mario Ceballos
|
3d3ea9788c
|
added auxiliary module login_brute.rb and oracle_default_passwords.csv.
git-svn-id: file:///home/svn/framework3/trunk@6819 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-17 14:20:22 +00:00 |
HD Moore
|
f8c2a203fd
|
OSVDB references updates from Steve Tornio
git-svn-id: file:///home/svn/framework3/trunk@6812 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-16 16:02:24 +00:00 |
Mario Ceballos
|
4f88b5a5c1
|
added auxiliary module sid_brute.rb and sid.txt wordlist.
git-svn-id: file:///home/svn/framework3/trunk@6807 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-16 00:03:50 +00:00 |
Patrick Webster
|
f151ecc0ca
|
Added mirc_privmsg_server exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6806 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-15 11:44:55 +00:00 |
Mario Ceballos
|
6005ac7c3f
|
added exploit module tns_service_name.rb. updated ora_ntlm_stealer.rb to use the new mixin.
git-svn-id: file:///home/svn/framework3/trunk@6804 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-15 03:50:45 +00:00 |
HD Moore
|
6624dbd5ff
|
Adds coverage for SBerry's Firefox 3.5 exploit (win32 only atm).
git-svn-id: file:///home/svn/framework3/trunk@6803 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 21:59:35 +00:00 |
HD Moore
|
d5a15718b5
|
Fix up AutoRunScript support (reflective had not been updated before being switched as default)
git-svn-id: file:///home/svn/framework3/trunk@6802 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 21:36:23 +00:00 |
Mario Ceballos
|
55356c88e1
|
added auxiliary module tnscmd.rb
git-svn-id: file:///home/svn/framework3/trunk@6800 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 16:48:56 +00:00 |
HD Moore
|
b018df89da
|
Some minor tweaks, looks like this module doesnt play nice with the new JS encrypter
git-svn-id: file:///home/svn/framework3/trunk@6799 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 11:59:33 +00:00 |
HD Moore
|
f897d1d3d5
|
Patch from jabra for enable mssql brute forcing
git-svn-id: file:///home/svn/framework3/trunk@6798 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 11:30:41 +00:00 |
Mario Ceballos
|
212dc2f2b0
|
addition of oracle mixin and sql client.
git-svn-id: file:///home/svn/framework3/trunk@6796 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 03:55:32 +00:00 |
HD Moore
|
b2a0f8adf5
|
Comment out references for now
git-svn-id: file:///home/svn/framework3/trunk@6795 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 02:42:52 +00:00 |
HD Moore
|
298ba64734
|
Fix the references section
git-svn-id: file:///home/svn/framework3/trunk@6794 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-14 00:25:26 +00:00 |
HD Moore
|
306841cc69
|
Adds coverage for the new OWC ActiveX control exploit
git-svn-id: file:///home/svn/framework3/trunk@6792 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 23:39:42 +00:00 |
James Lee
|
d84c87fa36
|
updated version info and disclosure date for opera_historysearch
git-svn-id: file:///home/svn/framework3/trunk@6788 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 23:12:25 +00:00 |
HD Moore
|
5fb316b383
|
Integrates L4teral's JS encoder/encrypter
git-svn-id: file:///home/svn/framework3/trunk@6784 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 22:17:11 +00:00 |
James Lee
|
3e072dd66e
|
add Opera historysearch module; works on linux, windows will come later
git-svn-id: file:///home/svn/framework3/trunk@6777 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 07:48:12 +00:00 |
Mario Ceballos
|
055c58b82e
|
rename module to make room for new one.
git-svn-id: file:///home/svn/framework3/trunk@6775 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-13 03:50:18 +00:00 |
HD Moore
|
6e85581e2f
|
Updates from jabra for the phishing modules
git-svn-id: file:///home/svn/framework3/trunk@6767 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-12 03:57:25 +00:00 |
kris
|
58671fd684
|
disconnect() tcp socket instead of just close()ing it
git-svn-id: file:///home/svn/framework3/trunk@6758 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-09 07:08:25 +00:00 |
druid
|
c846f02c79
|
Final commit of working CLSIDs
git-svn-id: file:///home/svn/framework3/trunk@6755 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 22:15:59 +00:00 |
druid
|
7a7b2df5a5
|
Updated list of working ClassIDs
git-svn-id: file:///home/svn/framework3/trunk@6754 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 21:34:13 +00:00 |
druid
|
b9e7e0b902
|
Removed some CLSIDs that didn't work
git-svn-id: file:///home/svn/framework3/trunk@6753 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 21:25:23 +00:00 |
druid
|
02f7d6b586
|
Exploit now uses a random ClassID from the list provided by the Microsoft Advisory rather than a static one (also configurable via an advanced option).
git-svn-id: file:///home/svn/framework3/trunk@6751 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-08 19:47:44 +00:00 |
HD Moore
|
a54b9a06ef
|
Exploit module for the new MS Video ActiveX flaw from Trancer. See more at http://www.rec-sec.com/2009/07/06/ms-directshow-msvidctl-exploit/
git-svn-id: file:///home/svn/framework3/trunk@6750 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-07 11:11:46 +00:00 |
Mario Ceballos
|
94b2eb1cef
|
updated to make things more reliable.
git-svn-id: file:///home/svn/framework3/trunk@6749 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-07 07:00:45 +00:00 |
Patrick Webster
|
50fc339988
|
Correct spelling re: RFC. Thanks to Shuyao Yu.
git-svn-id: file:///home/svn/framework3/trunk@6748 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-06 10:07:46 +00:00 |
Patrick Webster
|
ee09d81d49
|
Added Cisco VPN Concentrator FTP bug aux module.
git-svn-id: file:///home/svn/framework3/trunk@6747 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-06 10:05:21 +00:00 |
HD Moore
|
957d894336
|
Add support for the apple network status check
git-svn-id: file:///home/svn/framework3/trunk@6746 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-06 01:12:55 +00:00 |
HD Moore
|
48e1e5f351
|
Merge Stephen Fewer's patches to enable support for Windows 7 (fixes support for NT and 2000 as well)
git-svn-id: file:///home/svn/framework3/trunk@6744 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-05 20:24:37 +00:00 |
HD Moore
|
8a9675f27e
|
Switch the reflective loaders to the new default, fixes an issue in the old loader with large DLLs within some processes
git-svn-id: file:///home/svn/framework3/trunk@6743 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-05 06:23:46 +00:00 |
HD Moore
|
4ffd60a089
|
Move the old DLL injection payloads to a new naming convention
git-svn-id: file:///home/svn/framework3/trunk@6742 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-05 06:21:58 +00:00 |
James Lee
|
01953f7c16
|
improved unix cmd encoder
git-svn-id: file:///home/svn/framework3/trunk@6738 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-03 06:35:13 +00:00 |
Patrick Webster
|
a4e0c88a1b
|
Added MDaemon WorldClient Form2Raw.cgi exploit module.
git-svn-id: file:///home/svn/framework3/trunk@6736 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-03 01:26:21 +00:00 |
Patrick Webster
|
69725e75a2
|
Added MS02-063 PPTP DoS aux.
git-svn-id: file:///home/svn/framework3/trunk@6735 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-03 01:24:55 +00:00 |
Patrick Webster
|
28440435f3
|
Added 3com_superstack_switch DoS aux module.
git-svn-id: file:///home/svn/framework3/trunk@6734 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-01 03:57:04 +00:00 |
Patrick Webster
|
9174bcd0a8
|
Added iomega_storcentrepro_sessionid aux module.
git-svn-id: file:///home/svn/framework3/trunk@6733 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-01 03:55:56 +00:00 |
druid
|
c1a5ed32b6
|
Added more information to note entered into database abstraction layer
git-svn-id: file:///home/svn/framework3/trunk@6731 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-30 17:42:20 +00:00 |
druid
|
1df854bee7
|
Removed unused options, added success message.
git-svn-id: file:///home/svn/framework3/trunk@6730 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-30 14:09:19 +00:00 |
druid
|
69cc96a1ae
|
Adds database support for logging wardialer scan results using report_note
git-svn-id: file:///home/svn/framework3/trunk@6729 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-30 04:54:00 +00:00 |
druid
|
22c8af48eb
|
Added some output for fax and carrier detection
git-svn-id: file:///home/svn/framework3/trunk@6728 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-30 02:55:37 +00:00 |
druid
|
e03428dd8f
|
Disabled debugging output
git-svn-id: file:///home/svn/framework3/trunk@6727 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-30 01:52:48 +00:00 |
druid
|
bb0408e570
|
Exploit for /bin/login over dialup
git-svn-id: file:///home/svn/framework3/trunk@6725 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-29 14:13:41 +00:00 |
Mario Ceballos
|
f90d4123ab
|
added exploit module bopup_comm.rb
git-svn-id: file:///home/svn/framework3/trunk@6721 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-27 14:31:29 +00:00 |
HD Moore
|
fefaaa1884
|
Convert ; comments to // for debug mode
git-svn-id: file:///home/svn/framework3/trunk@6713 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-25 19:48:37 +00:00 |
HD Moore
|
d981332b89
|
Better search behavior for console and msfweb
git-svn-id: file:///home/svn/framework3/trunk@6706 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-24 01:31:16 +00:00 |
Patrick Webster
|
9b94ee52ef
|
Added dell_openmanage_post aux module.
git-svn-id: file:///home/svn/framework3/trunk@6699 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-23 13:23:50 +00:00 |
Ramon de C Valle
|
c2362ec409
|
All your POWER are belong to us.
git-svn-id: file:///home/svn/framework3/trunk@6698 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-23 03:49:25 +00:00 |
HD Moore
|
d0fe4e8610
|
Remove overzealous change for 1.9.1 compat
git-svn-id: file:///home/svn/framework3/trunk@6697 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-22 13:22:50 +00:00 |
HD Moore
|
66a6bfe9c0
|
Make the PDF modules 1.9.1 compatible
git-svn-id: file:///home/svn/framework3/trunk@6696 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-22 13:21:08 +00:00 |
HD Moore
|
4a421dbb33
|
Fix some busted code in the frontpage_login module, thanks to bill.e.ghote
git-svn-id: file:///home/svn/framework3/trunk@6691 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-21 06:30:55 +00:00 |
HD Moore
|
2ec7693d94
|
Fix up the modules to pass in the framework object into the new API call
git-svn-id: file:///home/svn/framework3/trunk@6687 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 18:18:04 +00:00 |
HD Moore
|
2283e0ffe4
|
Update executable template and API
git-svn-id: file:///home/svn/framework3/trunk@6682 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 17:42:17 +00:00 |
James Lee
|
bc037bbbac
|
make php findsock work again for php_eval and php_include
git-svn-id: file:///home/svn/framework3/trunk@6678 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 05:50:52 +00:00 |
HD Moore
|
1fba3f678b
|
Adds Windows 7 support for the primary stagers: http://www.harmonysecurity.com/blog/2009/06/retrieving-kernel32s-base-address.html
git-svn-id: file:///home/svn/framework3/trunk@6677 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 04:35:44 +00:00 |
HD Moore
|
2061f2e048
|
Try 445 then 139 - faster in most cases
git-svn-id: file:///home/svn/framework3/trunk@6675 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-20 02:43:56 +00:00 |
HD Moore
|
3a9e42ceb8
|
Green dam exploit from Trancer
git-svn-id: file:///home/svn/framework3/trunk@6671 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-18 01:54:15 +00:00 |
HD Moore
|
1484405c79
|
Updates to work with the newer aux api
git-svn-id: file:///home/svn/framework3/trunk@6670 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-17 21:39:17 +00:00 |
HD Moore
|
67b307557d
|
fix eol-style settings
git-svn-id: file:///home/svn/framework3/trunk@6668 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-17 20:54:52 +00:00 |
HD Moore
|
c72263e9c3
|
Adds antoine's tftp brute forcer
git-svn-id: file:///home/svn/framework3/trunk@6667 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-17 20:52:47 +00:00 |
HD Moore
|
5fb2b95190
|
Patch to simplify the fileformat options from antoine
git-svn-id: file:///home/svn/framework3/trunk@6666 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-17 20:34:28 +00:00 |
HD Moore
|
b8efb1bbf9
|
Add Stephen Fewer's shiny exploit for the Java deserialization flaw
git-svn-id: file:///home/svn/framework3/trunk@6664 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-16 17:19:44 +00:00 |
HD Moore
|
f78482d3f5
|
Indicate lack of support for ruby 1.9.0, indicate experimental support for ruby 1.9.1
git-svn-id: file:///home/svn/framework3/trunk@6661 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-14 21:30:56 +00:00 |
HD Moore
|
a113343d00
|
Fix a broken next
git-svn-id: file:///home/svn/framework3/trunk@6649 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-14 15:02:32 +00:00 |
HD Moore
|
697f0946e1
|
Reference correction
git-svn-id: file:///home/svn/framework3/trunk@6637 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-11 23:23:58 +00:00 |
HD Moore
|
314d1a27a2
|
Adds a new module from nebulous for checking SSL expiry
git-svn-id: file:///home/svn/framework3/trunk@6636 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-09 21:12:48 +00:00 |
HD Moore
|
a5f567e76e
|
Massive OSVDB reference update from Steve Tornio.
git-svn-id: file:///home/svn/framework3/trunk@6629 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-07 20:20:42 +00:00 |
HD Moore
|
b7cac075e0
|
Adds the itunes overflow from Will Drewry: http://redpig.dataspill.org/2009/05/drive-by-attack-for-itunes-811.html
git-svn-id: file:///home/svn/framework3/trunk@6627 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-05 02:30:24 +00:00 |
et
|
fdff151442
|
More threading
git-svn-id: file:///home/svn/framework3/trunk@6626 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-04 03:52:22 +00:00 |
et
|
65c3f5981d
|
just rename it
git-svn-id: file:///home/svn/framework3/trunk@6625 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-04 03:27:23 +00:00 |
et
|
07bd36232f
|
minor fixes
git-svn-id: file:///home/svn/framework3/trunk@6624 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-04 03:21:22 +00:00 |
et
|
509233262c
|
Advanced options to remove detail messages and handle multithreads
git-svn-id: file:///home/svn/framework3/trunk@6622 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-03 05:49:38 +00:00 |
HD Moore
|
16806be1a7
|
Adds threading
git-svn-id: file:///home/svn/framework3/trunk@6621 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-03 05:19:42 +00:00 |
et
|
36a21436ff
|
Fix DAV header match. Applied patch by grutz
git-svn-id: file:///home/svn/framework3/trunk@6610 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-02 04:43:57 +00:00 |
Mario Ceballos
|
fe463072d6
|
added exploit module ibmegath_getxmlvalue.rb
git-svn-id: file:///home/svn/framework3/trunk@6609 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-06-01 11:19:06 +00:00 |
et
|
ee70866e08
|
Small fix on authenticated dir check. Thanks Rhys Kidd
git-svn-id: file:///home/svn/framework3/trunk@6603 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-31 01:34:04 +00:00 |
et
|
166e1ebf2c
|
Added simplified version of webdav unicode bypass scanner
git-svn-id: file:///home/svn/framework3/trunk@6589 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-28 03:30:52 +00:00 |
et
|
e1c5c72c82
|
Added check for authenticated directories
git-svn-id: file:///home/svn/framework3/trunk@6588 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-28 03:27:25 +00:00 |
HD Moore
|
b6ab8ffd21
|
Fix up the unicoding
git-svn-id: file:///home/svn/framework3/trunk@6580 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-25 20:21:20 +00:00 |
HD Moore
|
f17ee863bc
|
Three new unpatched exploits from trancer: http://www.rec-sec.com
git-svn-id: file:///home/svn/framework3/trunk@6578 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-05-24 15:06:12 +00:00 |