Tod Beardsley
|
898398fd54
|
Fixing author tags
Ensuring a space between name and email.
|
2012-05-15 15:43:53 -05:00 |
|
Tod Beardsley
|
9b3f602910
|
Msftidy on mozilla_attribchildremoved.rb
was executable, had bad spacing.
|
2012-05-15 15:39:30 -05:00 |
|
sinn3r
|
d54a228f65
|
Correct version number
|
2012-05-15 01:16:41 -05:00 |
|
Steve Tornio
|
7690e86a89
|
add osvdb ref
|
2012-05-14 07:14:10 -05:00 |
|
Steve Tornio
|
bcfa96ced8
|
add osvdb ref
|
2012-05-14 07:13:49 -05:00 |
|
sinn3r
|
d2c26f989c
|
Cleanup whitespace
|
2012-05-13 04:42:22 -05:00 |
|
sinn3r
|
c1fbf1f931
|
Merge branch 'mozilla_attribchildremoved' of https://github.com/corelanc0d3r/metasploit-framework into corelanc0d3r-mozilla_attribchildremoved
|
2012-05-13 04:37:49 -05:00 |
|
Peter Van Eeckhoutte (corelanc0d3r)
|
dd42c3096e
|
added exploit for Firefox 8&9 AttributeChildRemoved UAF
|
2012-05-13 11:31:46 +02:00 |
|
sinn3r
|
5d8fbefc3d
|
Merge pull request #378 from wchen-r7/distinct
Add OSVDB-80984 - Distinct TFTP Directory traversal
|
2012-05-11 13:14:19 -07:00 |
|
sinn3r
|
653d7e5923
|
Add OSVDB-80984
|
2012-05-11 15:07:31 -05:00 |
|
Jeff Jarmoc
|
c2c160f86c
|
randomizes options from equivilants
|
2012-05-11 11:31:26 -05:00 |
|
sinn3r
|
7eabce8872
|
Add comment for PrependEncoder
|
2012-05-10 12:18:50 -05:00 |
|
sinn3r
|
2b13330483
|
Merge pull request #376 from wchen-r7/wikkawiki
Add CVE-2011-4449
|
2012-05-10 10:13:56 -07:00 |
|
sinn3r
|
6e8c3ad1e3
|
It's "inject", not "upload"... because technically that's what really happens.
|
2012-05-10 12:06:02 -05:00 |
|
sinn3r
|
c69e34d407
|
Update description
|
2012-05-10 12:02:55 -05:00 |
|
sinn3r
|
86c3ad5e0c
|
Add CVE-2011-4449
|
2012-05-10 11:57:40 -05:00 |
|
Jeff Jarmoc
|
e1156834b9
|
Lots of encoding randomizations for php_cgi_arg_injection
|
2012-05-09 14:13:21 -05:00 |
|
Tod Beardsley
|
65800f7c6e
|
Whitespace on solarwinds
|
2012-05-09 12:47:22 -05:00 |
|
Jeff Jarmoc
|
4909d8073a
|
Added lots or encoding randomness
|
2012-05-09 11:01:15 -05:00 |
|
sinn3r
|
ce16ab662c
|
Cosmetic changes. Also lower the rank for now, because I picked up a state where it can be less stable.
|
2012-05-08 00:22:19 -05:00 |
|
sinn3r
|
22585ad935
|
Merge branch 'firefox_exploit' of https://github.com/lincoln-corelan/metasploit-framework into lincoln-corelan-firefox_exploit
|
2012-05-08 00:00:03 -05:00 |
|
lincoln-corelan
|
b8227b8a2e
|
Firefox Exploit
|
2012-05-07 19:41:03 -07:00 |
|
HD Moore
|
1a30e221a0
|
See #362 by changing the exitfunc arguments to be the correct type
|
2012-05-07 02:42:29 -05:00 |
|
HD Moore
|
f6c88377f4
|
Fixes #362 by changing the exitfunction arguments to be the correct type
|
2012-05-07 02:41:08 -05:00 |
|
Steve Tornio
|
ba4ae384d7
|
add osvdb ref
|
2012-05-05 10:14:07 -05:00 |
|
Steve Tornio
|
cef2da6110
|
add osvdb ref
|
2012-05-05 10:13:42 -05:00 |
|
Steve Tornio
|
92e07aab12
|
Add osvdb ref
|
2012-05-05 10:13:18 -05:00 |
|
James Lee
|
18a44148dc
|
Randomize case for ini true/false values
|
2012-05-04 17:32:32 -06:00 |
|
HD Moore
|
423437c620
|
Woops, small typo in disable_functions
|
2012-05-04 12:17:41 -05:00 |
|
HD Moore
|
c6b39e8e5c
|
Add additional definitions to disable safe_mode, open_basedir, suhosin. (thanks @i0n1c)
|
2012-05-04 12:15:46 -05:00 |
|
HD Moore
|
2ce3558bb4
|
Bump the rank
|
2012-05-04 10:19:37 -05:00 |
|
HD Moore
|
bed4846763
|
A little more module cleanup
|
2012-05-04 10:06:18 -05:00 |
|
HD Moore
|
d668e2321d
|
Rename this to a more suitable location
|
2012-05-04 09:59:40 -05:00 |
|
HD Moore
|
6cf6a9548d
|
Fix up the PHP CGI exploit, remove debug lines
|
2012-05-04 09:58:10 -05:00 |
|
sinn3r
|
d5d35551ab
|
Add EDB reference
|
2012-05-04 00:11:29 -05:00 |
|
sinn3r
|
6d5ceb07b6
|
Merge pull request #359 from wchen-r7/solarwinds_storage_manager_sql
Add Solarwinds Storage Manager 5.1.0 SQL Injection (code execution)
|
2012-05-03 22:02:12 -07:00 |
|
sinn3r
|
9a36017271
|
no unicode
|
2012-05-04 00:01:03 -05:00 |
|
sinn3r
|
25b11a02b5
|
Update the comment for check()
|
2012-05-03 20:37:36 -05:00 |
|
sinn3r
|
4bf674ece6
|
Pff, and of course, I had to make a typo on that one
|
2012-05-03 20:34:52 -05:00 |
|
sinn3r
|
1a4d3f849c
|
A little change to the description
|
2012-05-03 20:33:28 -05:00 |
|
sinn3r
|
7ca69f00b0
|
Add Solarwinds Storage Manager 5.1.0 SQL Injection (code execution)
|
2012-05-03 20:24:42 -05:00 |
|
James Lee
|
2d1f4d4f3e
|
Add hdm's better check method
|
2012-05-03 19:00:40 -06:00 |
|
James Lee
|
40ec3d9d40
|
Add an exploit module for the recent php cgi bug (CVE-2012-1823)
|
2012-05-03 18:51:54 -06:00 |
|
Tod Beardsley
|
43d730d564
|
Squashed commit of minor cosmetic fixes:
commit eed15ea9ecc88683c8d922fe155d4777a7ce1286
Author: Tod Beardsley <todb@metasploit.com>
Date: Wed May 2 21:55:56 2012 -0500
Whitespace at EOL. Dangit.
commit 8159b27728d1a4fd0ad94ff56c4b4f2b995646f8
Author: Tod Beardsley <todb@metasploit.com>
Date: Wed May 2 16:38:01 2012 -0500
Disambiguating 'WebCalendar'
|
2012-05-02 21:57:41 -05:00 |
|
sinn3r
|
3e72f555ae
|
Forgot... I don't need to print the client's IP manually anymore
|
2012-05-01 12:56:03 -05:00 |
|
sinn3r
|
3099236059
|
We no longer have to print the client's IP, because it's now a built-in feature.
|
2012-05-01 12:47:55 -05:00 |
|
juan
|
01b0d85526
|
module for cve-2012-1775 added
|
2012-05-01 16:39:30 +02:00 |
|
HD Moore
|
9988d6a430
|
Tabs. Sweet sweet tabs
|
2012-05-01 00:35:01 -05:00 |
|
sinn3r
|
5fec29e6b7
|
Add McAfee Virtual Technician ActiveX MVTControl vulnerability
|
2012-04-30 16:23:52 -05:00 |
|
sinn3r
|
fd2e4c12a2
|
Fix possible "can't convert Fixnum into String" error
|
2012-04-30 13:49:53 -05:00 |
|