add ms09-004 exploit via sql injection from Rodrigo Marcos |
|
More...
|
over 14 years ago
|
Fixes #3531, Use new accounts mixin to resolve SID->Account Names |
|
More...
|
over 14 years ago
|
Fixes #1936, Add accounts mixin and accompanying post module |
|
More...
|
over 14 years ago
|
See #1936, Add FreeSid definition and convert several PSID* out params to PDWORD |
|
More...
|
over 14 years ago
|
Add GUI ability to disable DB, and properly restore saved options. |
|
More...
|
over 14 years ago
|
Fixed a deadlock issue with Armitage's automatic use of sysinfo to get OS info when needed. Also fixed a bug causing the Windows command shell to not work on when using Armitage on Windows (kind of ironic). |
|
More...
|
over 14 years ago
|
don't output a newline. matters with jar payloads because the zip format has a footer |
|
More...
|
over 14 years ago
|
carlos forgot to delete this, see r11550, r11551 |
|
More...
|
over 14 years ago
|
accept a client argument for get_uri() |
|
More...
|
over 14 years ago
|
Allow getsystem to report its success as a host note. |
|
More...
|
over 14 years ago
|
servers don't have a sock(). |
|
More...
|
over 14 years ago
|
disable ssl for the php include server, and try the address with the default gateway for get_uri when SRVHOST is inaddr_any |
|
More...
|
over 14 years ago
|
Fixes #3257, Adds two mod_negotiation scanner modules from DiabloHorn |
|
More...
|
over 14 years ago
|
See #1936, Apply patch from Chao Mu - PSID is kind of opaque, so we treat it as a pointer only (not a blob) |
|
More...
|
over 14 years ago
|
Messing around with FTP fuzzing this morning, fixed up the ftp_pre_post fuzzer to allow for a little more control over the commands being fuzzed (also fixed a couple bugs). |
|
More...
|
over 14 years ago
|
Adds an OptFloat option class, for when people actually want floats and not integers. |
|
More...
|
over 14 years ago
|
Fixes #3287, Catch an exception from a directory scan |
|
More...
|
over 14 years ago
|
Fixes #3571, normalize 2k3r2 and fix language defaulting |
|
More...
|
over 14 years ago
|
Adds a attribute_locked? method to Host objects. If an attribute is locked, report_host() won't update it. (These aren't very serious locks since you can still set them directly on objects, but if you use the API, and you should, locks will be respected.) |
|
More...
|
over 14 years ago
|
style compliance fixes |
|
More...
|
over 14 years ago
|
Fixes #3567, apply patch to make ports/payloads configurable |
|
More...
|
over 14 years ago
|
doesn't work on IE8, fixes #3566, thanks Hauke Mehrtens for the patch |
|
More...
|
over 14 years ago
|
Fixes #3564 by better randomizing the temp directory for extraction (minimizing the chance of a filesystem name collision), correctly extracting the original workspace name, and identifying the correct XML file to work off of for importing hosts and services. |
|
More...
|
over 14 years ago
|
Fixed option parsing |
|
More...
|
over 14 years ago
|
Fixes #3554, add missing variable to published_applications (from published_bruteforce), some clean ups |
|
More...
|
over 14 years ago
|
make sure we have the right kind of args. fixes argument processing for scripts |
|
More...
|
over 14 years ago
|
Fixes #3552, add ConvertStringSidtoSid |
|
More...
|
over 14 years ago
|
missing file |
|
More...
|
over 14 years ago
|
Make creds visible to RPC and GUI. |
|
More...
|
over 14 years ago
|
add android file snarfer exploit |
|
More...
|
over 14 years ago
|