batrick
0b41f81489
remove stray getfenv
2012-05-27 08:59:35 +00:00
batrick
000f6dc4d9
Lua 5.2 upgrade [1] for NSE.
...
[1] http://seclists.org/nmap-dev/2012/q2/34
2012-05-27 08:53:32 +00:00
aca
a839e69449
Rewrote mysql-brute to use brute library
2012-05-25 17:57:04 +00:00
patrik
5368a4adea
Fixed bug that would make the script fail with the error message:
...
"invalid capture index" [Patrik Karlsson]
2012-05-23 17:53:30 +00:00
kroosec
9300777ced
Removed http-traceroute from default category.
2012-05-22 22:43:16 +00:00
patrik
49edb164d2
renamed distcc-CVE-2004-2687.nse to distcc-cve2004-2687.nse
2012-05-22 19:53:19 +00:00
patrik
a1c7c9d31c
Added thread support to the ssl-enum-ciphers script which dramatically improves
...
performance. [Patrik Karlsson]
2012-05-22 19:44:27 +00:00
patrik
61501038d2
o [NSE] Added the script icap-info, which tries to identify common ICAP
...
service names and list service and tag information. [Patrik Karlsson]
2012-05-22 18:34:25 +00:00
fyodor
22c7faa94b
move the svn version number up to 6.01 and rebuild
2012-05-22 09:51:42 +00:00
fyodor
51e01bc14a
Reword the script description slightly
2012-05-22 09:49:36 +00:00
kroosec
b95ed1812e
Fixed @usage for http-traceroute.
2012-05-21 14:37:45 +00:00
kroosec
fd98061754
Fixed a small typo (--script-arg ) in 5 scripts.
2012-05-20 16:05:55 +00:00
kroosec
855bdbd289
Added http-traceroute script which exploits Max-Forwards HTTP header to detect reverse proxies.
2012-05-20 15:42:33 +00:00
patrik
d9b67a884b
Added missing author and licensing information.
2012-05-20 14:45:16 +00:00
patrik
322ed971a2
o Added the script distcc-CVE-2004-2687 that checks and exploits a remote
...
command execution vulnerability in distcc. [Patrik Karlsson]
2012-05-19 17:39:53 +00:00
patrik
af950450b7
o Added two new scripts mysql-query and mysql-dump-hashes, which add support
...
for performing custom MySQL queries and dump MySQL password hashes. [Patrik
Karlsson]
2012-05-19 17:33:41 +00:00
aca
c6341d2245
Fixed a typo in the description.
2012-05-19 16:36:59 +00:00
patrik
425ced35ab
o Improved the mysql library to handle multiple columns with the same name,
...
added a formatResultset function to format a query response to a table
suitable for script output. [Patrik Karlsson]
2012-05-19 12:23:41 +00:00
fyodor
5efa8bccee
Improve the nsedoc for duplicates script slightly. The attempt to make a list wasn't rendered as one by nsedoc, so I just switched it to a comma-separated list for now
2012-05-18 02:48:13 +00:00
kroosec
9d37d8bdca
Added fallback to GET + body grepping for servers that return non 404 status codes for inexisting files.
2012-05-17 11:46:00 +00:00
kroosec
1e936a2eda
Added http-drupal-modules.nse to script.db
2012-05-16 08:10:27 +00:00
kroosec
ced6a8cc01
o [NSE] Added the script http-drupal-modules, which enumerates the installed
...
Drupal modules using drupal-modules.lst. [Hani Benhabiles]
2012-05-16 00:14:16 +00:00
aca
85066093de
Rewrite of ftp-brute.nse script
...
Rewriten original ftp-brute.nse script to use
brute library to perform password guessing.
2012-05-14 21:53:37 +00:00
patrik
60c62a3514
o [NSE] Added the script dict-info, which retrieves information from a
...
DICT server, by issuing the SHOW SERVER command. [Patrik Karlsson]
2012-05-14 21:37:39 +00:00
patrik
b1fa1f567c
o [NSE] Added the script gkrellm-info, which displays information retrieved
...
from the GKRellm monitoring service. [Patrik Karlsson]
2012-05-14 21:34:01 +00:00
patrik
2a3a2520fa
o [NSE] Added the script ajp-request, which adds support for creating custom
...
Apache JServer Protocol requests. [Patrik Karlsson]
o [NSE] Added the script ajp-brute, which enables password brute force auditing
against the Apache JServ Protocol service. [Patrik Karlsson]
2012-05-14 21:30:24 +00:00
robert
bc73457e5f
Updated the hash information in http-php-version to include PHP/5.4.1-5.4.3 and 5.3.11-5.3.13.
2012-05-13 08:43:50 +00:00
patrik
2842c85900
updated script documentation
2012-05-11 17:15:07 +00:00
aca
e5b0d24607
Small patch to rdp-vuln-ms12-020.nse
...
Windows resets the connection if we try to reconect too fast to the same port after doing a SYN scan and not completing the handshake. In my tests, sleep values above 0.1s prevent the connection reset so it's set to 0.2 .
2012-05-08 20:51:16 +00:00
paulino
96c6cd7780
Adds http-vuln-cve2012-1823.nse - This script detects PHP-CGI installations that are vulnerable to CVE-2012-1823. This vulnerability is critical and it allows attackers to retrieve source code and execute code remotely.
2012-05-08 05:56:04 +00:00
patrik
08d35bad20
Added IP information to the returned result and added support for collecting multiple
...
responses.
2012-05-07 20:16:15 +00:00
patrik
bc7f0106a2
o [NSE] Added the script broadcast-tellstick-discover, which discovers Telldus
...
Technologies TellStickNet devices on the LAN. [Patrik Karlsson]
2012-05-07 20:01:25 +00:00
patrik
d02dafb630
o [NSE] Added the Apache JServer Protocol (AJP) library and the scripts
...
ajp-methods, ajp-headers and ajp-auth. [Patrik Karlsson]
2012-05-07 18:49:22 +00:00
patrik
cec2dd7816
Fixed a bug reported by Josh Greenwood that would incorrectly detect a host having IP
...
forwarding enabled if the scanned host was the same as the probe target.
2012-05-05 19:44:46 +00:00
patrik
a3efccc448
Improved documentation for mmouse-exec and mmouse-brute.
2012-05-01 20:08:22 +00:00
patrik
2b2f42200e
Applied patch to ip-forwarding.nse from Daniel Miller that fixes bug that would
...
incorrectly detect hosts as having IP forwarding enabled, allthough they did
not. [Daniel Miller]
2012-05-01 19:09:58 +00:00
patrik
7f12d63392
o [NSE] Added the script mmouse-exec that connects to a Mobile Mouse server,
...
starts an application, and sends a sequence of keystrokes to it. [Patrik
Karlsson]
o [NSE] Added the script mmouse-brute that performs brute force password
auditing against the Mobile Mouse service. [Patrik Karlsson]
2012-05-01 14:29:36 +00:00
patrik
cceb2ff10a
o [NSE] Added the script cups-queue-info that lists the contents of a remote
...
CUPS printer queue. [Patrik Karlsson]
2012-05-01 14:23:40 +00:00
patrik
b4079e90ff
o [NSE] Added the script ip-forwarding that detects devices that have IP
...
forwarding enabled (acting as routers). [Patrik Karlsson]
2012-05-01 14:21:00 +00:00
patrik
16ddb3c167
Fixed missing script name in @usage
2012-04-24 20:14:13 +00:00
patrik
2de40c99b4
o [NSE] Added the script samba-vuln-cve-2012-1182 which detects the SAMBA CVE
...
2012-1182 vulnerability. [Aleksandar Nikolic]
2012-04-21 22:44:23 +00:00
patrik
2e308b771f
o [NSE] Added the dns-check-zone script that checks DNS configuration against
...
best practices including RFC 1912. [Patrik Karlsson]
2012-04-21 22:28:30 +00:00
patrik
8e5bc1e26e
o [NSE] Added the http-gitweb-projects-enum that queries a gitweb for a list
...
of Git projects, their authors and descriptions. [riemann]
2012-04-20 12:46:49 +00:00
robert
a9d9983fd0
Updated the hash information to include PHP/5.4.0.
2012-04-19 15:01:27 +00:00
david
8ceb88911c
Simplify some code in targets-sniffer.nse.
2012-04-17 21:47:31 +00:00
david
870aed3393
Allow targets-sniffer.nse to sniff IPv6 addresses.
...
Patch by Daniel Miller.
2012-04-17 21:47:30 +00:00
patrik
9a9cf1fa7d
Updated the description of http-icloud-sendmsg
2012-04-17 20:16:07 +00:00
patrik
3386ba1e2e
o [NSE] Added the script traceroute-geolocation that queries geographic
...
locations of each traceroute hop and allows to export the results to KLM,
allowing the hops to be plotted on a map. [Patrik Karlsson]
2012-04-17 19:39:27 +00:00
patrik
15a790d490
o [NSE] Added the ipp library and the script cups-info that lists available
...
printers by querying the cups network daemon. [Patrik Karlsson]
2012-04-17 19:37:22 +00:00
patrik
8ca252235e
o [NSE] Added the mobilme library and the scripts http-icloud-findmyiphone and
...
http-icloud-sendmsg, that finds the location of iOS devices and provides
functionality to send them messages. [Patrik Karlsson]
2012-04-17 19:35:44 +00:00