nnposter
066bbcfa2b
Adds more default credentials for Apache Tomcat
2016-10-31 01:32:40 +00:00
nnposter
9607d14032
Updates Xplico fingerprint to take advantage of the new "404" handling
2016-10-31 01:30:40 +00:00
nnposter
ede50cec50
Removes a limitation of script http-default-accounts that prevented testing of systems returning status 200 for non-existent pages. Closes #577
2016-10-30 19:20:28 +00:00
nnposter
de2ed2eec6
Implements consistent local cache control and redirect handling for script http-default-accounts. Closes #551
2016-10-30 18:58:25 +00:00
nnposter
670a90fae3
Adds a missing check for OpenSSL to one of the fingerprints
2016-10-01 00:27:44 +00:00
dmiller
4a8df9a9d7
Add options to http-enum fingerprints format. Patch based on work by Josh Amishav-Zlatin
2016-09-28 13:22:42 +00:00
paulino
7db0072047
Adds JBoss Seam Debug page. This page leaks critical information sometimes.
2016-09-19 21:32:10 +00:00
dmiller
e6f45c41f7
Add a few more communities to snmpcommunities.lst
...
Three sources:
1. all-caps PUBLIC and PRIVATE because community strings are
case-sensitive
2. Cisco small-business switch backdoor SNMP community string
3. Phenoelit's Default Password List
2016-09-14 03:16:17 +00:00
nnposter
4a2b034854
Tightens target_check in the fingerprint for Lantronix SLC
2016-09-14 02:16:00 +00:00
nnposter
52a88e0f21
Updates two fingerprints to support non-English sites
2016-09-14 01:51:22 +00:00
nnposter
0a5be207da
Removes an obsolete import from http-default-accounts-fingerprints.lua
2016-09-12 23:59:09 +00:00
fyodor
1124811015
Just added Roy Hills as a second author since he wrote most of the contents (he is already credited in the description, but it felt weird to not have him listed as an author too)
2016-09-03 05:49:09 +00:00
nnposter
c3f6425047
Disables Cisco IOS probe paths that are likely redundant
2016-09-01 19:25:38 +00:00
nnposter
9ef2633c7e
Cleans up the fingerprint file with a few trivialities
2016-08-31 01:05:58 +00:00
nnposter
fc69ad90b2
Adds a fingerprint for VMware ESXi hypervisor
2016-08-30 21:12:59 +00:00
nnposter
46f0e79a6c
Adds a fingerprint for Citrix NetScaler
2016-08-30 21:11:32 +00:00
nnposter
6545995cb3
Adds a fingerprint for Xerox WorkCentre/ColorQube
2016-08-30 21:10:27 +00:00
nnposter
3af4a0c20c
Adds a fingerprint for Schneider Modicon Web Server
2016-08-30 21:09:24 +00:00
nnposter
24e6547a08
Adds a fingerprint for Zabbix monitoring
2016-08-30 21:07:49 +00:00
nnposter
3419a71b24
Adds a fingerprint for HP Storage Management Utility
2016-08-30 21:06:02 +00:00
dmiller
3d377e07ee
tftp-enum: Don't brute cisco names with custom wordlists. Fixes #117 . Closes #355
2016-08-30 18:59:57 +00:00
nnposter
3ea1cdf460
Reduces false-positives by treating 404 as a failed authentication
2016-08-30 16:12:30 +00:00
nnposter
020980bcba
Adds a fingerprint for Dell iDRAC6 remote console to script http-default-accounts
2016-08-22 13:43:53 +00:00
nnposter
c23e8bae3e
Adds a fingerprint for Lantronix ThinWeb Manager to script http-default-accounts
2016-08-22 13:41:01 +00:00
nnposter
76760b0c8d
Adds a fingerprint for Motorola AP-7532 to script http-default-accounts
2016-08-22 13:35:18 +00:00
nnposter
47d84ec60f
Tightens target_check in the fingerprint for BeEF
2016-08-20 02:15:02 +00:00
paulino
ae7fe28936
Adds JMX Invoker interface
2016-08-19 19:40:03 +00:00
nnposter
0303ef5b59
Adds a few trivial improvements to the http-default-accounts fingerprints
2016-08-19 19:14:51 +00:00
nnposter
c3ab8da378
Updates target_check in the fingerprint for Zebra printers to accommodate older versions
2016-08-19 19:07:44 +00:00
nnposter
034ba003ec
Adds Aironet credentials to the fingerprint for Cisco IOS
2016-08-19 18:57:52 +00:00
nnposter
cc996985f8
Adds a more meaningful target_check to the fingerprint for Apache Axis2
2016-08-19 18:50:23 +00:00
nnposter
0aefe63c2b
Generalizes the fingerprint for Adobe LiveCycle Management Console
2016-08-19 18:33:57 +00:00
nnposter
37a9142101
Updates the listed http-default-accounts fingerprints to take advantage of
...
probe result sharing across fingerprints. (This feature has been implemented
in r36134 and described in issue 516.)
- Cacti
- Cisco IOS
- Cisco WAP200
- Cisco WAP55AG
- ASUS RT-N10U
- Motorola RF Switch
- Nortel VPN Router
- F5 BIG-IP
- Zebra Printer
- RICOH Web Image Monitor
- Lantronix SLC
2016-08-19 18:06:10 +00:00
nnposter
7d9994597e
Updates auth realm extraction pattern to accommodate extraneous spaces in the HTTP response header
2016-08-16 02:00:17 +00:00
nnposter
2804d04d36
Fixes Xplico fingerprint to account for non-default base path
2016-08-15 15:56:54 +00:00
dmiller
cb4b46bd53
Canonicalize authors as tables instead of comma-separated strings
2016-06-09 22:46:42 +00:00
dmiller
50e9080ef1
Grab latest enterprise numbers assignments from IANA
2016-05-11 14:55:45 +00:00
dmiller
fe0e0db1ba
Grab latest multicast address assignments from IANA
2016-05-11 14:55:44 +00:00
dmiller
0dd8757e70
Add needed requires to mysql-cis.audit. Closes #371
2016-05-11 14:55:43 +00:00
dmiller
b5f5690bb0
New default accounts from nnposter. Closes #301
2016-02-14 14:42:18 +00:00
dmiller
97163a3052
Fingerprint for WebSphere console by Vlatko Kosturjak
2016-01-14 21:08:28 +00:00
dmiller
bb507ac7bf
Add RomPager CVE-2014-4019 check to http-fingerprints
2016-01-06 20:47:06 +00:00
dmiller
f4619edece
Update http urls for nmap.org to https
2015-11-05 20:41:05 +00:00
gyani
ba873c28c0
http-drupal-enum replaces http-drupal-modules.
...
The script now supports drupal theme listing as well.
Updated drupal-modules.lst and added drupal-themes.lst.
2015-08-13 11:58:44 +00:00
gyani
3ef7d71863
Merge branch 'fingerprints'
2015-06-20 17:27:22 +00:00
dmiller
9c99b80d73
New RTSP urls for Logitech WiLife cameras [Dustin Miller]
2015-06-19 21:36:52 +00:00
dmiller
9781830ece
Check for system files and directory traversal in tftp-enum.nse
2015-05-15 19:35:17 +00:00
dmiller
0e74dd7a35
Replace some string.char and bin.pack calls with literals
2015-02-27 19:42:56 +00:00
dmiller
6ba9936d24
NSE support for Adobe LiveCycle
...
http-fingerprints and default account additions by rvrsh3ll.
Closes #61
2015-02-20 15:54:13 +00:00
dmiller
ca3d838b1b
Fix some globals in nselib/data/http-*.lua
2015-02-20 15:54:12 +00:00