sinn3r
|
64f4777407
|
Land #4091 - Xerox DLM injection
|
2014-10-30 22:15:16 -05:00 |
|
sinn3r
|
b7a1722b46
|
Pass msftidy, more descriptive name and description
|
2014-10-30 22:14:18 -05:00 |
|
Jon Hart
|
1a37a6638c
|
Fix splunk_upload_app_exec to work on new installs. Style
|
2014-10-30 18:28:56 -07:00 |
|
Jon Hart
|
55f245f20f
|
Merge #3507 into local, recently updated branch of master for landing
|
2014-10-30 17:28:20 -07:00 |
|
OJ
|
cc7f7c9986
|
Land #4108 - Avoid local offsets in CVE-2014-4113
|
2014-10-31 09:08:51 +10:00 |
|
jvazquez-r7
|
6574db5dbb
|
Fix the 64 bits code
|
2014-10-30 17:01:59 -05:00 |
|
sinn3r
|
92ad2c434d
|
Land #4081 - Xerox workcentre 5735 LDAP service redential extractor
|
2014-10-30 13:52:07 -05:00 |
|
sinn3r
|
470a067384
|
Final changes
|
2014-10-30 13:51:44 -05:00 |
|
sinn3r
|
912f6c8eee
|
Land #4085 - Xerox Administrator Console Password Extract
|
2014-10-30 13:37:32 -05:00 |
|
sinn3r
|
02b1c5c4bc
|
Final changes
|
2014-10-30 13:37:02 -05:00 |
|
sinn3r
|
127d1640da
|
Print password
|
2014-10-30 13:27:40 -05:00 |
|
Peter Arzamendi
|
9d56f0298a
|
Changed upper XXX to lower XXX.
|
2014-10-29 20:09:02 -05:00 |
|
Peter Arzamendi
|
b35a8935db
|
Updated get_once for get_once undefined method and EOFError
|
2014-10-29 13:47:07 -05:00 |
|
Deral Heiland
|
64a59e805c
|
Fix a simple typo
|
2014-10-29 12:40:24 -04:00 |
|
Deral Heiland
|
1bf1be0e46
|
Updated to module based feedback from wchen-r7
|
2014-10-29 11:42:07 -04:00 |
|
Peter Arzamendi
|
2bc8767751
|
Updated rescue to catch other errors from the socket API
|
2014-10-29 08:03:28 -05:00 |
|
Peter Arzamendi
|
604cad9fbb
|
Updated timeout to default to 45 seconds to wait for the print job to finish.
|
2014-10-28 15:45:28 -05:00 |
|
Peter Arzamendi
|
b17d6a661d
|
Moved module to auxiliary/gather and updated timeout to wait for the printer job to complete before we try to grab the creds.
|
2014-10-28 15:23:47 -05:00 |
|
Peter Arzamendi
|
0e42cf25d1
|
Updated per wchen-r7's recommendations. Still waiting to hear on Nokogiri
|
2014-10-28 15:13:16 -05:00 |
|
William Vu
|
71a6ec8b12
|
Land #4093, cups_bash_env_exec CVE-2014-6278
|
2014-10-28 12:47:51 -05:00 |
|
Brendan Coles
|
57baf0f393
|
Add support for CVE-2014-6278
|
2014-10-28 17:10:19 +00:00 |
|
William Vu
|
3de5c43cf4
|
Land #4050, CUPS Shellshock
Bashbleeded!!!!!!!!!!!
|
2014-10-28 11:59:31 -05:00 |
|
Peter Arzamendi
|
1012cd8d6b
|
Updated based on wchen-r7 feedback.
|
2014-10-28 11:38:50 -05:00 |
|
Brendan Coles
|
78b199fe72
|
Remove CVE-2014-6278
|
2014-10-28 16:18:24 +00:00 |
|
Joe Vennix
|
c6bbc5bccf
|
Merge branch 'landing-4055' into upstream-master
|
2014-10-28 11:18:20 -05:00 |
|
Deral Heiland
|
9021e4dae6
|
Xerox Workcentre firmware injection exploit
|
2014-10-28 11:15:43 -04:00 |
|
jvazquez-r7
|
5e0993d756
|
Add OJ as author
|
2014-10-28 09:58:34 -05:00 |
|
Tod Beardsley
|
dade6b97ba
|
Land #4088, wget exploit
Fixes #4077 as well.
|
2014-10-28 09:03:07 -05:00 |
|
Brendan Coles
|
a060fec760
|
Detect version in check()
|
2014-10-28 12:28:18 +00:00 |
|
sinn3r
|
e31c9f579d
|
Land #3987 - Buffalo Linkstation NAS Login Scanner
|
2014-10-28 01:45:57 -05:00 |
|
HD Moore
|
64c206fa62
|
Add module for CVE-2014-4877 (Wget)
|
2014-10-27 23:37:41 -05:00 |
|
Peter Arzamendi
|
0b225d94b1
|
Xerox Admin password extractor.
|
2014-10-27 19:26:40 -05:00 |
|
jvazquez-r7
|
b990b14a65
|
Land #3771, @us3r777's deletion of jboss_bshdeployer STAGERNAME option
|
2014-10-27 18:09:35 -05:00 |
|
parzamendi-r7
|
f7f6cff327
|
Update xerox_workcentre_5XXX_ldap.rb
|
2014-10-27 17:23:47 -05:00 |
|
Peter Arzamendi
|
f119abbf8c
|
Xerox workcentre 5735 LDAP credential extractor
|
2014-10-27 15:52:12 -05:00 |
|
jvazquez-r7
|
373ce8d340
|
Use perl encoding
|
2014-10-27 15:30:02 -05:00 |
|
Luke Imhoff
|
216360d664
|
Add missing require
MSP-11145
|
2014-10-27 15:19:59 -05:00 |
|
jvazquez-r7
|
9da83b6782
|
Update master changes
|
2014-10-27 14:35:30 -05:00 |
|
Spencer McIntyre
|
04a99f09bb
|
Land #4064, Win32k.sys NULL Pointer Dereference
|
2014-10-27 14:01:07 -04:00 |
|
William Vu
|
090d9b95d1
|
Land #4078, pureftpd_bash_env_exec desc. update
|
2014-10-27 12:12:09 -05:00 |
|
William Vu
|
950fc46e4b
|
Normalize description
|
2014-10-27 12:09:39 -05:00 |
|
Jon Hart
|
b8c9ef96ca
|
Land #4003, @nstarke's Login Scanner for WD MyBook Live NAS
|
2014-10-27 09:57:43 -07:00 |
|
Spencer McIntyre
|
830f631da4
|
Make the check routine less strict
|
2014-10-27 12:51:20 -04:00 |
|
sinn3r
|
aa5dc0a354
|
100 columns per line
|
2014-10-27 10:24:11 -05:00 |
|
sinn3r
|
7e56948191
|
Update description about pureftpd_bash_env_exec
Make exploitable requirements more obvious
|
2014-10-27 10:23:06 -05:00 |
|
Spencer McIntyre
|
46b1abac4a
|
More robust check routine for cve-2014-4113
|
2014-10-27 11:19:12 -04:00 |
|
jvazquez-r7
|
4406972b46
|
Do version checking minor cleanup
|
2014-10-27 09:32:42 -05:00 |
|
jvazquez-r7
|
c319ea91b3
|
Delete verbose print
|
2014-10-26 17:31:19 -05:00 |
|
jvazquez-r7
|
34697a2240
|
Delete 'callback3' also from 32 bits version
|
2014-10-26 17:28:35 -05:00 |
|
Spencer McIntyre
|
7416c00416
|
Initial addition of x64 target for cve-2014-4113
|
2014-10-26 16:54:42 -04:00 |
|