perdo
fe5c4c7bad
Added http-form-fuzzer script that fuzzes forms it finds on websites.
2012-06-10 23:05:42 +00:00
aca
78c48319cf
Merged dns-nsec3-enum to trunk
2012-06-09 18:44:46 +00:00
aca
858606f754
Commited http-frontpage-login to main branch
2012-06-09 18:28:50 +00:00
patrik
0372cf9e7a
o [NSE] Added the script smb-ls that lists files on SMB shares and produces
...
output similar to the dir command on Windows. [Patrik Karlsson]
2012-06-03 18:10:49 +00:00
patrik
6da1b367a5
o [NSE] Added the script eppc-enum-processes that enumerates active
...
applications, their PID and the UID under which they run through the Apple
Remote Event protocol. [Patrik Karlsson]
2012-05-29 18:25:49 +00:00
patrik
3d7250ecc4
o [NSE] Added the Internet Storage Name Service (iSNS) library and the
...
isns-info script that lists information about portals and iSCSI devices.
[Patrik Karlsson]
2012-05-29 18:02:19 +00:00
paulino
cc1ba1ff3d
Adds http-huawei-hg5xx-vuln. Detects Huawei modems models HG530x, HG520x, HG510x and possibly others that are vulnerable to a remote credential and information disclosure vulnerability. It also extracts the PPPoE credentials
...
and other interesting configuration values.
2012-05-27 19:18:23 +00:00
kroosec
9300777ced
Removed http-traceroute from default category.
2012-05-22 22:43:16 +00:00
patrik
49edb164d2
renamed distcc-CVE-2004-2687.nse to distcc-cve2004-2687.nse
2012-05-22 19:53:19 +00:00
patrik
61501038d2
o [NSE] Added the script icap-info, which tries to identify common ICAP
...
service names and list service and tag information. [Patrik Karlsson]
2012-05-22 18:34:25 +00:00
fyodor
22c7faa94b
move the svn version number up to 6.01 and rebuild
2012-05-22 09:51:42 +00:00
kroosec
855bdbd289
Added http-traceroute script which exploits Max-Forwards HTTP header to detect reverse proxies.
2012-05-20 15:42:33 +00:00
patrik
322ed971a2
o Added the script distcc-CVE-2004-2687 that checks and exploits a remote
...
command execution vulnerability in distcc. [Patrik Karlsson]
2012-05-19 17:39:53 +00:00
patrik
af950450b7
o Added two new scripts mysql-query and mysql-dump-hashes, which add support
...
for performing custom MySQL queries and dump MySQL password hashes. [Patrik
Karlsson]
2012-05-19 17:33:41 +00:00
kroosec
1e936a2eda
Added http-drupal-modules.nse to script.db
2012-05-16 08:10:27 +00:00
patrik
60c62a3514
o [NSE] Added the script dict-info, which retrieves information from a
...
DICT server, by issuing the SHOW SERVER command. [Patrik Karlsson]
2012-05-14 21:37:39 +00:00
patrik
b1fa1f567c
o [NSE] Added the script gkrellm-info, which displays information retrieved
...
from the GKRellm monitoring service. [Patrik Karlsson]
2012-05-14 21:34:01 +00:00
patrik
2a3a2520fa
o [NSE] Added the script ajp-request, which adds support for creating custom
...
Apache JServer Protocol requests. [Patrik Karlsson]
o [NSE] Added the script ajp-brute, which enables password brute force auditing
against the Apache JServ Protocol service. [Patrik Karlsson]
2012-05-14 21:30:24 +00:00
paulino
96c6cd7780
Adds http-vuln-cve2012-1823.nse - This script detects PHP-CGI installations that are vulnerable to CVE-2012-1823. This vulnerability is critical and it allows attackers to retrieve source code and execute code remotely.
2012-05-08 05:56:04 +00:00
patrik
bc7f0106a2
o [NSE] Added the script broadcast-tellstick-discover, which discovers Telldus
...
Technologies TellStickNet devices on the LAN. [Patrik Karlsson]
2012-05-07 20:01:25 +00:00
patrik
d02dafb630
o [NSE] Added the Apache JServer Protocol (AJP) library and the scripts
...
ajp-methods, ajp-headers and ajp-auth. [Patrik Karlsson]
2012-05-07 18:49:22 +00:00
patrik
7f12d63392
o [NSE] Added the script mmouse-exec that connects to a Mobile Mouse server,
...
starts an application, and sends a sequence of keystrokes to it. [Patrik
Karlsson]
o [NSE] Added the script mmouse-brute that performs brute force password
auditing against the Mobile Mouse service. [Patrik Karlsson]
2012-05-01 14:29:36 +00:00
patrik
cceb2ff10a
o [NSE] Added the script cups-queue-info that lists the contents of a remote
...
CUPS printer queue. [Patrik Karlsson]
2012-05-01 14:23:40 +00:00
patrik
b4079e90ff
o [NSE] Added the script ip-forwarding that detects devices that have IP
...
forwarding enabled (acting as routers). [Patrik Karlsson]
2012-05-01 14:21:00 +00:00
patrik
2de40c99b4
o [NSE] Added the script samba-vuln-cve-2012-1182 which detects the SAMBA CVE
...
2012-1182 vulnerability. [Aleksandar Nikolic]
2012-04-21 22:44:23 +00:00
patrik
2e308b771f
o [NSE] Added the dns-check-zone script that checks DNS configuration against
...
best practices including RFC 1912. [Patrik Karlsson]
2012-04-21 22:28:30 +00:00
patrik
8e5bc1e26e
o [NSE] Added the http-gitweb-projects-enum that queries a gitweb for a list
...
of Git projects, their authors and descriptions. [riemann]
2012-04-20 12:46:49 +00:00
patrik
3386ba1e2e
o [NSE] Added the script traceroute-geolocation that queries geographic
...
locations of each traceroute hop and allows to export the results to KLM,
allowing the hops to be plotted on a map. [Patrik Karlsson]
2012-04-17 19:39:27 +00:00
patrik
15a790d490
o [NSE] Added the ipp library and the script cups-info that lists available
...
printers by querying the cups network daemon. [Patrik Karlsson]
2012-04-17 19:37:22 +00:00
patrik
8ca252235e
o [NSE] Added the mobilme library and the scripts http-icloud-findmyiphone and
...
http-icloud-sendmsg, that finds the location of iOS devices and provides
functionality to send them messages. [Patrik Karlsson]
2012-04-17 19:35:44 +00:00
patrik
59294eff19
o [NSE] Added gps library and the gpsd-info script that collects GPS data
...
from the gpsd daemon. [Patrik Karlsson]
2012-04-17 19:32:37 +00:00
david
bf2ad73137
--script-updatedb.
2012-04-09 21:40:05 +00:00
david
e7d263a00a
Add hostmap-robtex.nse by Arturo Busleiman.
2012-04-09 21:40:03 +00:00
david
4fe00f6b3a
Rename hostmap-robtex to http-robtex-shared-ns.
...
http://seclists.org/nmap-dev/2012/q2/96
2012-04-09 21:40:02 +00:00
david
798f047a99
Move hostmap.nse to hostmap-bfk.nse.
2012-04-09 06:35:15 +00:00
david
d20a9faf39
Add hostmap-robtex by Arturo Busleiman.
...
Originally called http-robtex-shared-domains.
http://seclists.org/nmap-dev/2012/q2/20
2012-04-09 06:35:12 +00:00
patrik
15b8331f72
o [NSE] Added the script http-vlcstreamer-ls which queries the VLC Streamer
...
helper service for a list of files in a given directory. [Patrik Karlsson]
2012-04-08 23:04:18 +00:00
patrik
80b1b2a689
o [NSE] Added script targets-ipv6-mld that sends a malformed ICMP6 MLD Query
...
to discover IPv6 enabled hosts on the LAN. [Niteesh Kumar]
2012-04-08 22:59:09 +00:00
patrik
23bf107e83
o [NSE] Added script http-virustotal that allows checking files, or hashes
...
of previously scanned files, against the major antivirus engines. [Patrik
Karlsson]
2012-04-07 08:51:42 +00:00
david
924731d9fb
Add rdp-vuln-ms12-020.nse.
2012-03-29 05:35:01 +00:00
fyodor
9a67069869
Rename asn-to-prefix script to targets-asn
2012-03-27 21:51:54 +00:00
patrik
e10d1bad27
o [NSE] Added new script http-chrono, which measures min, max and average
...
response times of web servers. [Ange Gutek]
2012-03-23 19:29:44 +00:00
patrik
05d3fa68d9
Renamed http-drupal-users-enum to http-drupal-enum-users and fixed
...
documentation and arguments accordingly.
2012-03-22 00:09:28 +00:00
patrik
92092f6b0e
o [NSE] Added new script http-drupal-users-enum, which enumerates all available
...
Drupal user accounts by exploiting a vulnerability in the Views module.
[Hani Benhabiles]
2012-03-21 03:42:42 +00:00
patrik
f592b85e59
o [NSE] Added new script broadcast-ataoe-discover, which discovers ATA over
...
Ethernet capable devices through LAN ethernet broadcasts. [Patrik Karlsson]
2012-03-17 22:49:40 +00:00
patrik
17247c681a
o [NSE] Added a stun library and the scripts stun-version and stun-info, which
...
extract version information and the external NAT:ed address.
[Patrik Karlsson]
2012-03-16 11:36:51 +00:00
patrik
523dbc609a
o [NSE] Added the script duplicates which attempts to determine duplicate
...
hosts by analyzing information collected by other scripts. [Patrik Karlsson]
2012-03-12 22:24:58 +00:00
fyodor
a37a2d3139
fix the category typo in the script.db too
2012-03-08 19:03:03 +00:00
patrik
542ed0bf67
o [NSE] Added the script acarsd-info that retrieves information from the acarsd
...
decoder daemon. [Brendan Coles]
2012-03-08 18:22:00 +00:00
patrik
1384a953a1
o [NSE] Added an EAP library and the script eap-info which discovers supported
...
EAP authentication methods. [Riccardo Cecolin]
2012-03-08 18:00:35 +00:00