Commit Graph

9290 Commits

Author SHA1 Message Date
William Vu e4c026fffd Update pipe_auditor module with PipeAuditor mixin 2018-03-22 15:37:45 -05:00
Jacob Robles 8d0e3ada74 Change option names and module type 2018-03-21 06:49:50 -05:00
Jacob Robles fc9005df8a Add External License Support 2018-03-21 06:26:25 -05:00
Jacob Robles 8d12118d1f Add get_user_spns external module and documentation 2018-03-21 06:26:15 -05:00
Jacob Robles ca7caae622 Change External Module Type Names
Change the a couple of external module type names
to be consistent with the template files.
2018-03-20 10:19:57 -05:00
Brent Cook 44d5022380 Land #9529, Add module for HP iLO CVE-2017-12542 authentication bypass 2018-03-16 16:50:54 -05:00
Brent Cook d1722d507b handle reset from the target on exploit 2018-03-16 16:46:50 -05:00
Brent Cook 65ae1e33e1 Land #9694, move ssh platforms to lib 2018-03-16 12:49:57 -05:00
Jacob Robles 1b2f1ced02 Land #8422, Typo3 News Module Sql Injection exploit 2018-03-15 10:55:04 -05:00
Jacob Robles ba0d990273 Documentation added and Error Checks 2018-03-15 10:46:08 -05:00
Jacob Robles 9e23997c3d Added Error Handling 2018-03-14 08:16:17 -05:00
Jacob Robles 1d51cf6d24 Implement Suggested Changes 2018-03-14 06:15:49 -05:00
Jacob Robles 64a51c1bd7 Save Credentials and IP 2018-03-13 08:47:08 -05:00
Can 28d890147b msftidy update and style changes 2018-03-13 09:30:48 +01:00
Can 1c7f1c79af Updated style 2018-03-13 09:26:34 +01:00
h00die 97dbc1273a copy pasta 2018-03-12 20:14:08 -04:00
Brent Cook 1587b5b682 Land #9686, add ipv6 to slowloris, rhost to non-scanner modules 2018-03-12 16:13:21 -05:00
Auxilus ef515d256d msftidy fixes 2018-03-13 00:34:25 +05:30
Auxilus 2c52498d4a Update smb_ms17_010.rb 2018-03-13 00:28:37 +05:30
Auxilus 6e9a4916f5 scanner update 2018-03-13 00:23:18 +05:30
Ege Balcı 2950c84660 Better code.
Added check function.
Smaller & cleaner code.
2018-03-12 20:33:46 +03:00
Brent Cook d86dcbc237 Land #9632, owa_login and auth_brute enhancements 2018-03-12 10:31:20 -05:00
Mzack9999 5ee50c5fab Username and password reported as credentials 2018-03-12 07:01:03 -05:00
Mzack9999 3d6af4c7ee Removed mail from author section 2018-03-12 07:01:03 -05:00
Mzack9999 b0ed8c4702 code cleanup 2018-03-12 07:01:03 -05:00
Mzack9999 7b781d53c9 Small code refactoring, added verbose output 2018-03-12 07:01:03 -05:00
Mzack9999 fe89e2d391 Corrected check method, warning in case of absence of news and TARGETURI parameter 2018-03-12 07:01:03 -05:00
Mzack9999 f09d9a8994 Solved msftidy.rb issues 2018-03-12 07:01:02 -05:00
Mzack9999 dbba27cc97 Fixed minor issues and added automatic detection of Patten1/Pattern2 2018-03-12 07:01:02 -05:00
Mzack9999 63444a2c43 Corrected wrong label in password hash message 2018-03-12 07:01:02 -05:00
Mzack9999 4a40f40c14 Typo3 News Module Sql Injection exploit 2018-03-12 07:00:45 -05:00
Ege Balcı 420905137b CVA added. 2018-03-12 08:42:28 +03:00
Ege Balcı d71b6bdf0d Update syncbreeze_enterprise_dos.rb
msftidy.rb adjustment.
2018-03-11 23:27:46 +03:00
Ege Balcı 0e4e260a02 Adding Sync Breeze Enterprise 10.6.24 DOS
This module triggers a Denial of Service vulnerability in the Sync Breeze Enterprise HTTP server. Vulnerable version of the product can be downloaded here (http://www.syncbreeze.com/setups/syncbreezeent_setup_v10.6.24.exe). After installing the software web server should be enabled via Options->Server->Enable web server on port. Module triggers a user space write access violation on syncbrs.exe memory region. Number of requests that will crash the server changes between 200-1000 depending on the OS version and system memory.
2018-03-11 23:07:50 +03:00
Jacob Robles 615f6b02af varnish no auth file read 2018-03-09 11:25:13 -06:00
Jacob Robles 1fd0087a97 Land #7654, varnish file read 2018-03-09 10:59:04 -06:00
Jacob Robles a458cb9ebc varnish file read msftidy fixes 2018-03-09 10:56:52 -06:00
Jacob Robles 037559023a Update connect/disconnect varnish
[ticket: #7654]
2018-03-09 10:37:14 -06:00
Jacob Robles ea78e21961 Documentation accuracy 2018-03-09 07:43:12 -06:00
Auxilus 9df99e8ce3 Update smb_ms17_010.rb 2018-03-09 16:10:20 +05:30
Auxilus 56fe70d84b Update smb_ms17_010.rb 2018-03-09 16:07:09 +05:30
h00die ec7a62bc4c move ssh platforms to lib 2018-03-08 21:23:11 -05:00
Auxilus 478f01d0d9 fix format 2018-03-09 02:25:58 +05:30
Can 72160598a7 msftidy fix
msftidy fix
2018-03-08 20:46:30 +01:00
Can 26f023e071 updates for passing msftidy
updates for passing msftidy
2018-03-08 20:34:49 +01:00
Can c1dc603f0d fixed EOLs, updated license comment
fixed EOLs, updated license comment
2018-03-08 19:53:18 +01:00
Can 9c4ff479cf module title changed 2018-03-08 15:23:02 +01:00
Can 0503a8d3e1 init siemens_siprotec4
init siemens_siprotec4
2018-03-08 14:09:53 +01:00
Adam Cammack 9a8f1ace2d Add slowloris support for IPv6 and hostnames
Replace manual socket creation with `socket.create_connection` to get
auto-detection goodness.
2018-03-07 17:06:04 -06:00
Jacob Robles 5a2f197c47 Remove redundant RPORT 2018-03-07 14:41:51 -06:00