patrik
381865f342
nse_check_global cleanup
2012-08-05 17:59:12 +00:00
patrik
be92f68cad
Fixed a bug in afp-brute and the afp library related to missing SSL.
2012-08-05 14:25:53 +00:00
patrik
6f43ac38b2
SSL overhaul fixing OpenSSL related problems when SSL has not been compiled in
...
* replace require function calls with stndse.silent_require
* fixed a bug in nse_main that would fail creating scripts.db when a script
fails to load
* reworked some code to provide limited functionality even though SSL is not
present
2012-08-05 12:05:07 +00:00
aca
7f96384ec8
Merged smb-print-text script from my dev branch
2012-08-04 18:44:59 +00:00
kroosec
da5a25c097
Added mrinfo.nse script which queries a target router for multicasting information.
2012-08-03 22:58:29 +00:00
aca
c88639e5b4
Updated ssl-date to use STARTTLS for supported protocols
2012-08-03 16:12:55 +00:00
david
54fa9ec345
Use shortport.http in http-title.
2012-08-02 05:28:02 +00:00
david
33998a1ab9
Simplify http-title output code.
2012-08-02 05:28:01 +00:00
david
6970ba6af2
Remove redirect code from http-title.
...
Use the implicit redirects inside http.lua.
2012-08-02 05:27:59 +00:00
patrik
37e9cadc3c
nse_check_globals cleanup
2012-08-02 05:25:15 +00:00
patrik
1d2f6906f5
Modified http-vhosts to use multiple worker threads and to completely bypass
...
caching in order to increase performance.
2012-08-02 05:19:07 +00:00
dmiller
762207f02e
Handle empty snmpcommunity correctly
2012-08-01 17:50:00 +00:00
henri
3c3b936391
Indentation fix.
2012-08-01 07:03:53 +00:00
david
d5e5d8c5bd
Remove "Server time" from ssl-date output.
...
This makes it match http-date more closely.
2012-07-31 20:57:30 +00:00
david
7cb7cbe163
Docs and output in ssl-date.nse.
2012-07-31 19:18:10 +00:00
aca
fc102a5ef4
Added ssl-date script
2012-07-31 19:11:10 +00:00
henri
dfdaadccb1
Style changes:
...
- Consistent variable naming
- Default parameters cleanup
- removed unused variables (like "local t = nmap.timing_level()")
- renamed functions consistently
- removed typo from function name ("worker_schedluer")
- consistent debug messages format
2012-07-31 18:12:28 +00:00
david
a2c2863531
Remove "hardmatched" argument from calls to nmap.set_port_version.
...
This is the default and can be omitted. Seeing as the value of this
argument was "hardmatched" in 100% of cases, we're better off pretending
the parameter doesn't exist.
2012-07-30 18:58:32 +00:00
david
453131b820
set_port_version in servicetags.nse.
...
The name, servicetags, is the same one as for the TCP port, but it
doesn't have enough popularity in nmap-services-all to appear in
nmap-services.
2012-07-30 18:58:25 +00:00
aca
4c4ce195df
Added smb-vuln-ms10-061 script from my dev branch
2012-07-30 09:48:03 +00:00
ron
e4823340d8
Fixed http-exif-spider - it used to be a symbolic link, by mistake - also updated script.db.
2012-07-29 21:49:32 +00:00
ron
4bd886cd9f
Removing http-exif-spider temporarily
2012-07-29 21:48:51 +00:00
patrik
bca0025032
nse_check_global cleanup
2012-07-29 09:26:23 +00:00
david
1441aea655
Reduce the number of names tried by http-vhosts by default.
...
Vlatko reported that this script was taking an inordinate amount of time
even in typical scans. This patch reduces the number of domains tried by
default. The new http-vhosts.filelist script argument allows
substituting the original list or another of your choosing.
Patch by Vlatko.
http://seclists.org/nmap-dev/2012/q3/432
2012-07-29 03:39:11 +00:00
dmiller
b868e7f3ce
Move caching code to datafiles lib
...
Scripts no longer need to implement caching of datafiles tables in the
registry, since the datafiles.lua library keeps its own cache in the
registry. A side-effect is that scripts should not change the tables
returned by datafiles.parse_{protocols,rpc,services,mac_prefixes}(), as
doing so will affect all other scripts that use those functions.
2012-07-27 20:07:38 +00:00
ron
959d9a67d3
Adding a new script - http-exif-spider.nse. It spiders a Web site looking for .jpeg images, and displays the image metadata (camera information, date, and geotag data).
2012-07-27 19:38:51 +00:00
patrik
4b77d989e2
added newtarget support to snmp-netstat script, allowing it to identify and
...
add new targets to the scan queue.
2012-07-26 13:49:03 +00:00
david
5e588b53da
More direct printing of remotes in http-git.
...
Show the uninterpreted remote URLs in every case. When matching specific
services, show the guesses about where the source might be hosted, but
remove verbose interpretation like "accessed over SSH".
Before:
| Remote: git@github.com:skullspace/breachdb.git
| GitHub remote: skullspace/breachdb (accessed over SSH)
|_ -> Source might be at https://github.com/skullspace/breachdb
After:
| Remote: git@github.com:skullspace/breachdb.git
|_ -> Source might be at https://github.com/skullspace/breachdb
2012-07-26 06:00:48 +00:00
david
c367d03916
Extract raw remote URLs in http-git.
2012-07-26 06:00:47 +00:00
david
8f907ae853
Local variable.
2012-07-26 06:00:45 +00:00
ron
ea5e4e07ae
Updated http-git - bugfixes, and also handles multiple roots with script-args
2012-07-25 01:47:43 +00:00
patrik
7880043ee2
minor fix in stun-version to remove a warning from ipOps.fromdword
...
indentation fix in stun-version
2012-07-24 12:05:57 +00:00
patrik
be858f4a7d
further improoved http-google-malware.nse malware detection by adding response
...
code checks.
2012-07-24 10:33:39 +00:00
patrik
b0c8a758a0
fixed bug where script would return "Host is safe to browse.", when an invalid
...
API key was being used.
2012-07-24 10:11:09 +00:00
patrik
217b27bace
nse_check_globals cleanup
2012-07-24 10:08:43 +00:00
perdo
8025ba5a5a
Added some checks for http response's body being nil.
2012-07-23 22:47:11 +00:00
jah
a1abb40d50
Removed extraneous newline from a couple of print_debug strings.
2012-07-23 22:25:51 +00:00
perdo
09f7b93949
Modify http-enum and http-fingerprints file so they work with http pipeline better.
2012-07-23 21:55:13 +00:00
aca
6fec00655d
Added smb-ms10-054 vuln check script to trunk
2012-07-23 09:52:38 +00:00
patrik
977996e5fa
o [NSE] Added rdp library and the script rdp-enum-encryption that enumerates
...
both the Security Layer and Encryption level of the RDP service. [Patrik
Karlsson]
2012-07-21 21:24:14 +00:00
aca
096e40d470
Added different message in case we determine that DoS is not due to slowloris and fixed an issue with try_ssl
2012-07-21 16:33:44 +00:00
david
3f7db8b9d3
Add flume-master-info.nse by John Bond.
2012-07-21 08:07:49 +00:00
aca
4eb88d2cde
Added ssl support to http-slowloris
2012-07-20 15:49:23 +00:00
ron
8b42180f31
Removed an errant call to ap(config) that ended up in the committed version of the script
2012-07-20 04:43:55 +00:00
david
72b0056fb5
Add http-get.nse by Alex Weber.
...
http://seclists.org/nmap-dev/2012/q2/935
2012-07-19 18:15:02 +00:00
david
89e93d6836
--script-updatedb.
2012-07-19 18:14:21 +00:00
jah
1c783a920e
Fixed some problems which caused snmp-interfaces to always fail after obtaining info from the IF-MIB tree walk (invalid use of the percent escape char in the replacement param to gsub and other minor errors).
...
Fixed a problem which caused snmp-interfaces to always fail in the pre-scanning phase (attempt to index the undefined host table).
2012-07-19 17:21:55 +00:00
dmiller
1aeec5790e
Add more ssl-ciphers strength ratings
...
Ratings generated with this perl script:
https://gist.github.com/3130353
2012-07-18 22:14:30 +00:00
kroosec
ab2caee812
Updated lltd-discovery for parsing hostnames and outputing the network card manufacturer.
2012-07-18 12:50:11 +00:00
kroosec
6023e253dc
Changed sip-enum-users which now uses brute.lua for extensions enumeration and supports iteration over custom lists and numeric ranges.
2012-07-18 12:06:33 +00:00