1
0
mirror of https://github.com/nmap/nmap.git synced 2025-12-10 09:49:05 +00:00
Commit Graph

9911 Commits

Author SHA1 Message Date
dmiller
83f95ce401 Actually add http-vuln-misfortune-cookie script file 2015-05-31 18:34:22 +00:00
dmiller
976d5d2a40 Add http-vuln-misfortune-cookie script. Closes #77 2015-05-31 18:33:44 +00:00
dmiller
00064a1809 Whitespace/reindent cleanup in NSE. https://secwiki.org/w/Nmap/Code_Standards 2015-05-31 17:37:51 +00:00
dmiller
3d4fb07728 Add a couple unrequired libraries (NSE) 2015-05-31 17:37:45 +00:00
gio
a1eeaa8887 Fixes #130 snmp-brute.nse is IPversion agnostic now 2015-05-31 16:39:55 +00:00
gio
ead27df538 Fixes #86 look only for 2.4 <= python < 3 in configure as python3 is not supported 2015-05-31 16:36:57 +00:00
dmiller
ef878ea895 Notify in -v mode if SSL verification fails, even if --ssl-verify was not requested. Fixes #30 2015-05-31 12:14:04 +00:00
dmiller
9e6008eb79 Some reworking of the CHANGELOG. Closes #67 2015-05-31 11:47:36 +00:00
dmiller
41e06e9e9c Fix saving of host comments in Zenmap. Fixes #133
Sometimes (all the time?) hosts are "cloned" or deep-copied instead of being
copied by reference, so testing whether a host is "in" a scan is insufficient.
Now we check by address, the same way that Zenmap uses to determine 2 hosts are
the "same" for merging their output.

Also, avoid considering a scan as having unsaved changes if the comment field is
merely focused but unchanged.
2015-05-31 02:47:26 +00:00
dmiller
939d42209f Add fingerprint integration changelog entries 2015-05-30 12:43:13 +00:00
dmiller
79b9b4da78 Consolidate NSE scripts since 6.47 in CHANGELOG 2015-05-29 03:53:25 +00:00
dmiller
2f799b4be7 Script doc updates: wrong CVE, dead link 2015-05-29 03:53:23 +00:00
dmiller
ccb240d5b7 Finalize CHANGELOG for 6.45 release, finally 2015-05-29 01:54:20 +00:00
dmiller
499e861d2b Consolidate NSE scripts in changelog for 6.45 release 2015-05-28 23:08:32 +00:00
dmiller
3a2c434998 Check if Nmap's user agent is redirected in http-useragent-tester 2015-05-28 23:08:31 +00:00
dmiller
79f25ae304 Revert lpeg conversion of telnet-brute in favor of lua patterns
Long and sordid history here (http://seclists.org/nmap-dev/2014/q3/62
and http://seclists.org/nmap-dev/2015/q1/61) and in the Github issue.
Lua patterns approach was chosen due to simplicity; we have several good
examples of LPEG patterns now, so it was not worth sacrificing accuracy
or clarity to use them here.

Fixes #35
2015-05-28 13:19:03 +00:00
dmiller
c6278aa7f0 Don't package Ndiff uninstaller in RPM 2015-05-28 13:19:01 +00:00
dmiller
0297e68141 Regenerate configure 2015-05-27 19:50:07 +00:00
dmiller
14d5f4a600 New Nmap configure art 2015-05-27 19:48:59 +00:00
dmiller
3b5cdcc054 Fix configure art using wrong awk on Solaris (Fixes #131) 2015-05-26 13:36:20 +00:00
dmiller
63ad40fb74 Fix a bug in creds.lua, comparing creds without users
When creds.lua is used without usernames (like in snmp-brute.nse), the
credentials could not be sorted because they are sorted first by
username, which is nil and cannot be compared. Now the script first
checks that both values are non-nil (and true) before comparing them.
2015-05-26 03:40:09 +00:00
dmiller
0f602cbd38 Fix address detection on Solaris. Fixes #124 2015-05-23 13:22:29 +00:00
gyani
3d56f12042 Added http-vuln-cve2015-1427 to CHANGELOG 2015-05-22 12:47:15 +00:00
paulino
97bbb0f4fa Adds http-vuln-cve2015-1635 to detect Microsoft Windows systems vulnerable to MS15-034 2015-05-22 04:23:50 +00:00
gyani
48f9ac26b5 fixed doccumentation indentation 2015-05-21 15:54:23 +00:00
gyani
e60b65b016 fixed doccumentation 2015-05-21 15:42:58 +00:00
gyani
6a4c2ab7e5 A script to check RCE in Elastic Search 2015-05-21 10:02:56 +00:00
dmiller
81d7937876 Update Ncat's root certificate store. Closes #14 2015-05-21 02:15:56 +00:00
dmiller
251e1da42b Add missing CPEs for o// templates 2015-05-20 22:09:21 +00:00
dmiller
318e929794 Finish service submissions through 2/17 (closes #25) 2015-05-20 20:53:02 +00:00
dmiller
9c04123ad5 Remove some http headers that http.lua sets already. 2015-05-19 19:11:18 +00:00
fyodor
ec120db54f Update the gpg --fingerprint output to show my old email address (since that is what users will actually see). I think it was changed in a big search-and-replace some years ago. 2015-05-16 01:15:53 +00:00
dmiller
258c861c03 Process 200-ish service fingerprints 2015-05-15 21:48:31 +00:00
dmiller
5a8a4a63ba Standardize capitalization of TP-LINK in nmap-os-db 2015-05-15 21:46:44 +00:00
dmiller
6a8f12e165 Prevent NSE from connecting to the wrong AF: http://seclists.org/nmap-dev/2012/q3/871 2015-05-15 19:35:18 +00:00
dmiller
9781830ece Check for system files and directory traversal in tftp-enum.nse 2015-05-15 19:35:17 +00:00
dmiller
cfac127194 Mark a service as tftp if tftp-enum says it is 2015-05-15 19:35:15 +00:00
jah
d6ff72d9a3 Change sslstrip service probe match to softmatch.
SSLStrip is not the only service to respond to the GenericLines probe
with the "HTTP 400 Bad Request" match: TwistedWeb and at least one
home router does too.  The softmatch will allow these other services
to be queried by more specific probes.

It would obviously be better to find a better way of matching SSLStrip
and this softmatch may yet be deleted if it causes services to be
erroneously labelled as sslstrip where there is no better match.

See thread at http://seclists.org/nmap-dev/2014/q1/337
2015-05-14 15:17:33 +00:00
paulino
ed9e9eb154 Fixes broken URL. Updates http://nmap.org/install to https://nmap.org/book/install.html 2015-05-11 01:44:13 +00:00
dmiller
246c4ab9f8 Process 224 more service fingerprints 2015-05-09 04:03:15 +00:00
dmiller
7572f3a5bb Process 515 service fingerprints 2015-05-05 03:04:42 +00:00
dmiller
052ac7d0e9 Some OS group corrections and tweaks (IPv6) 2015-05-02 13:37:15 +00:00
dmiller
e658387ff4 More robustly handle asymmetric routes in IPv6 OS detection
The HLIM feature was miscategorizing probes where the route from the
target was shorter than the route to the target. This would result, e.g.
in a distance calculation of 9 and a received hop limit of 57. Adding
the distance to the hop limit remaining gave a guessed initial hop limit
of 66, which would exceed the "64" category. In IPv4 fingerprints, we
put the TG test (initial TTL guess) as a range of 5 up or down from the
expected number to allow for this and other interference. This patch
does the same for IPv6.
2015-05-02 13:25:49 +00:00
dmiller
daf8c58a79 Fix snmp-brute output 2015-05-02 13:25:47 +00:00
fyodor
aa840a1b8c Updated Italian refguide translation by Andrea Pizzarotti 2015-05-02 05:20:14 +00:00
dmiller
4bbef7d69b Update libpcap to 1.7.3, partially addressing #34 2015-05-01 20:24:47 +00:00
dmiller
d8c13c49e1 Fix a typo in nmap-os-db, Yosemite is OS X 10.10, not 10.9 2015-05-01 20:06:05 +00:00
henri
0877bf8e7f afp-ls: prevent script from stopping when an error occurs
Patch by Pierre LALET <pierre.lalet@cea.fr>
2015-04-30 17:58:49 +00:00
henri
9dafb0fa05 smb-ls: do not report connection errors by default
Patch by Pierre LALET <pierre.lalet@cea.fr>
2015-04-30 17:58:34 +00:00
henri
4d0e7c9000 Script smb-ls can now use results from smb-enum-shares
- smb-ls parameter `path` is now optional (defaults to '\').

  - smb-ls parameter `maxdepth` now defaults to 1 (no recursion)
    instead of 0 (infinite recursion).

  - smb-ls has a new `shares` parameter to specify a comma-separated
    list of shares to browse.

  - smb-enum-shares adds found shares to an array in the host
    registry, and smb-ls uses this array when no `share` or `shares`
    parameter have been specified.

Patch by Pierre LALET <pierre.lalet@cea.fr>
2015-04-30 17:58:19 +00:00