Tod Beardsley
|
bc1c9a7fe4
|
Prepend all messages with victim host:port
Redefining print_status locally to handle this. Seems like an easy way
to do this kind of thing for a particular module.
[Closes #272]
|
2012-05-11 17:48:54 -05:00 |
|
Tod Beardsley
|
ab655677b4
|
Fixed typo, converted to OptEnum for fakedns targetaction
|
2012-05-11 17:12:31 -05:00 |
|
Jose Selvi
|
af71cdafe2
|
Update modules/auxiliary/server/fakedns.rb
|
2012-05-11 17:01:14 -05:00 |
|
Jose Selvi
|
1d6b2eb3fe
|
Added TARGETACTION options and wildcard support
|
2012-05-11 17:01:13 -05:00 |
|
sinn3r
|
5d8fbefc3d
|
Merge pull request #378 from wchen-r7/distinct
Add OSVDB-80984 - Distinct TFTP Directory traversal
|
2012-05-11 13:14:19 -07:00 |
|
sinn3r
|
653d7e5923
|
Add OSVDB-80984
|
2012-05-11 15:07:31 -05:00 |
|
Tod Beardsley
|
aa3930fcb9
|
Typo on fixed tftp module
|
2012-05-10 21:42:33 -05:00 |
|
Tod Beardsley
|
36c805c5ff
|
Move the context setting to the module
Apparently you can't hit the framework object before running the module
any more. Bummer.
[Fixes #6843]
|
2012-05-10 21:21:32 -05:00 |
|
sinn3r
|
7eabce8872
|
Add comment for PrependEncoder
|
2012-05-10 12:18:50 -05:00 |
|
sinn3r
|
2b13330483
|
Merge pull request #376 from wchen-r7/wikkawiki
Add CVE-2011-4449
|
2012-05-10 10:13:56 -07:00 |
|
sinn3r
|
6e8c3ad1e3
|
It's "inject", not "upload"... because technically that's what really happens.
|
2012-05-10 12:06:02 -05:00 |
|
sinn3r
|
c69e34d407
|
Update description
|
2012-05-10 12:02:55 -05:00 |
|
sinn3r
|
86c3ad5e0c
|
Add CVE-2011-4449
|
2012-05-10 11:57:40 -05:00 |
|
Tod Beardsley
|
65800f7c6e
|
Whitespace on solarwinds
|
2012-05-09 12:47:22 -05:00 |
|
James Lee
|
536fa39ae8
|
Keep the client and the server on tracked tcp sessions
|
2012-05-08 16:38:12 -06:00 |
|
Alexandre Maloteaux
|
452cead1e9
|
Merge psnuffle ntlmv2 support from Alex Malateaux
Testing this with smbclient requires setting "client ntlmv2 auth = yes"
in /etc/samba/smb.conf
Squashed commit of the following:
commit 7acc32f5f00914fed355a080ca237543448f80ca
Author: Alexandre Maloteaux <a.maloteaux@gmail.com>
Date: Thu Apr 12 01:52:49 2012 +0100
psnuffle : move protocol filtering in load function
commit 9c9ae9711c760b4f072271b7e5993f9bf8366671
Author: Alexandre Maloteaux <a.maloteaux@gmail.com>
Date: Thu Apr 12 01:50:48 2012 +0100
psnuffle : add hash exctratiopn from smbv2 session
[Closes #327]
|
2012-05-08 13:41:42 -06:00 |
|
Tod Beardsley
|
86500aad47
|
Author is always singular.
|
2012-05-08 08:47:52 -05:00 |
|
sinn3r
|
91a8ff2766
|
Use print_good when SQL injection is found
|
2012-05-08 01:30:13 -05:00 |
|
sinn3r
|
fa9d23d839
|
When a blind SQL injection, it's a good thing (for the attacker), so we should use print_good
|
2012-05-08 01:26:39 -05:00 |
|
sinn3r
|
ce16ab662c
|
Cosmetic changes. Also lower the rank for now, because I picked up a state where it can be less stable.
|
2012-05-08 00:22:19 -05:00 |
|
sinn3r
|
22585ad935
|
Merge branch 'firefox_exploit' of https://github.com/lincoln-corelan/metasploit-framework into lincoln-corelan-firefox_exploit
|
2012-05-08 00:00:03 -05:00 |
|
lincoln-corelan
|
b8227b8a2e
|
Firefox Exploit
|
2012-05-07 19:41:03 -07:00 |
|
HD Moore
|
1a30e221a0
|
See #362 by changing the exitfunc arguments to be the correct type
|
2012-05-07 02:42:29 -05:00 |
|
HD Moore
|
f6c88377f4
|
Fixes #362 by changing the exitfunction arguments to be the correct type
|
2012-05-07 02:41:08 -05:00 |
|
Steve Tornio
|
ba4ae384d7
|
add osvdb ref
|
2012-05-05 10:14:07 -05:00 |
|
Steve Tornio
|
cef2da6110
|
add osvdb ref
|
2012-05-05 10:13:42 -05:00 |
|
Steve Tornio
|
92e07aab12
|
Add osvdb ref
|
2012-05-05 10:13:18 -05:00 |
|
James Lee
|
18a44148dc
|
Randomize case for ini true/false values
|
2012-05-04 17:32:32 -06:00 |
|
sinn3r
|
9c3d2355b1
|
Allow this module to be more verbose for future debugging
|
2012-05-04 15:47:30 -05:00 |
|
sinn3r
|
f48d36ca31
|
Output changes. #6511
|
2012-05-04 15:11:54 -05:00 |
|
sinn3r
|
454a20b079
|
Fix bug #6438
|
2012-05-04 14:52:27 -05:00 |
|
sinn3r
|
457ca44f27
|
Fix #6511
|
2012-05-04 14:33:49 -05:00 |
|
sinn3r
|
babababeb1
|
1. Fix enum_dns: .txt is not (or no longer a method)
2. Patch snmp_enum: bug #6500
|
2012-05-04 13:23:27 -05:00 |
|
sinn3r
|
8b3b952ccd
|
Fix bug #6761 - false negative when OWA brings the user to the Options page insetad of inbox
|
2012-05-04 12:30:43 -05:00 |
|
HD Moore
|
423437c620
|
Woops, small typo in disable_functions
|
2012-05-04 12:17:41 -05:00 |
|
HD Moore
|
c6b39e8e5c
|
Add additional definitions to disable safe_mode, open_basedir, suhosin. (thanks @i0n1c)
|
2012-05-04 12:15:46 -05:00 |
|
sinn3r
|
69b60b88f8
|
Fix bug #6801: Error handling for get_imperstoken()
|
2012-05-04 11:44:05 -05:00 |
|
HD Moore
|
2ce3558bb4
|
Bump the rank
|
2012-05-04 10:19:37 -05:00 |
|
HD Moore
|
bed4846763
|
A little more module cleanup
|
2012-05-04 10:06:18 -05:00 |
|
HD Moore
|
d668e2321d
|
Rename this to a more suitable location
|
2012-05-04 09:59:40 -05:00 |
|
HD Moore
|
6cf6a9548d
|
Fix up the PHP CGI exploit, remove debug lines
|
2012-05-04 09:58:10 -05:00 |
|
sinn3r
|
d5d35551ab
|
Add EDB reference
|
2012-05-04 00:11:29 -05:00 |
|
sinn3r
|
6d5ceb07b6
|
Merge pull request #359 from wchen-r7/solarwinds_storage_manager_sql
Add Solarwinds Storage Manager 5.1.0 SQL Injection (code execution)
|
2012-05-03 22:02:12 -07:00 |
|
sinn3r
|
9a36017271
|
no unicode
|
2012-05-04 00:01:03 -05:00 |
|
sinn3r
|
25b11a02b5
|
Update the comment for check()
|
2012-05-03 20:37:36 -05:00 |
|
sinn3r
|
4bf674ece6
|
Pff, and of course, I had to make a typo on that one
|
2012-05-03 20:34:52 -05:00 |
|
sinn3r
|
1a4d3f849c
|
A little change to the description
|
2012-05-03 20:33:28 -05:00 |
|
sinn3r
|
1cdc376f2b
|
Merge branch 'msfvenom_nomethoderror' of https://github.com/silviupopescu/metasploit-framework into silviupopescu-msfvenom_nomethoderror
|
2012-05-03 20:29:06 -05:00 |
|
sinn3r
|
7ca69f00b0
|
Add Solarwinds Storage Manager 5.1.0 SQL Injection (code execution)
|
2012-05-03 20:24:42 -05:00 |
|
James Lee
|
2d1f4d4f3e
|
Add hdm's better check method
|
2012-05-03 19:00:40 -06:00 |
|