bmantra
|
03da56fc7d
|
HP uCMDB CSRF add user module
|
2012-10-05 13:23:24 +02:00 |
|
bcoles
|
ba20f17831
|
Ugh. Apparently target can't be null. Fixed.
|
2012-09-30 18:50:28 +09:30 |
|
bcoles
|
a135e9f51f
|
Update supported browsers for multiple modules
Pretty Theft module does not work in IE
Multiple exploit modules haven't been tested
|
2012-09-29 17:39:14 +09:30 |
|
bmantra
|
9b62ae83dc
|
fix jboss exploit with forge_request
|
2012-09-18 20:59:54 +02:00 |
|
bcoles
|
9e47942d3f
|
Added FreeNAS remote reverse root shell CSRF module
For more information see: http://support.freenas.org/ticket/1788
|
2012-09-09 21:05:16 +09:30 |
|
bcoles
|
384fe7bcab
|
Fix issue #741
|
2012-09-07 23:00:24 +09:30 |
|
bcoles
|
a4e74aaad0
|
Added AlienVault OSSIM 3.1 XSS module
|
2012-07-24 10:55:28 +09:30 |
|
bcoles
|
7f0026fc79
|
Added Linksys WVC series wireless camera CSRF module
|
2012-07-15 19:18:37 +09:30 |
|
bcoles
|
40f7145531
|
Updated D-Link DIR-615 router module
|
2012-07-15 19:01:09 +09:30 |
|
bcoles
|
d8adf26827
|
Added Asmax AR-804gu Command Execution module
|
2012-07-15 00:49:19 +09:30 |
|
bcoles
|
c380ca75ed
|
Added 3COM OfficeConnect Command Execution module
|
2012-07-15 00:16:11 +09:30 |
|
bcoles
|
9d2022531c
|
Added Cisco E2400 CSRF router module
|
2012-07-14 22:44:58 +09:30 |
|
bcoles
|
29ba7dbf38
|
Added spaces to two config.yaml files
Fixes bug with parsing yaml on some versions of Ruby
|
2012-06-29 08:42:21 +09:30 |
|
antisnatchor
|
e54ec1e569
|
Updated authors, sorry dude (n0x00). issue #711
|
2012-06-28 13:28:18 +01:00 |
|
antisnatchor
|
2ef1492eed
|
Added comment in config.yaml for #711
|
2012-06-28 09:55:44 +01:00 |
|
antisnatchor
|
cc29a4434f
|
Added PAssword wipe XSRF for Dlink DIR-615 (issue #711)
|
2012-06-28 09:53:59 +01:00 |
|
bcoles
|
123b81b2b4
|
Updated virgin_superhub_csrf module
Now disables firewall and enabled remote administration
Fixes issue #705
Fixes issue #706
Fixes issue #707
|
2012-06-25 11:18:28 +09:30 |
|
bcoles
|
9440afacc9
|
Removed duplicate / from a few CSRF URLs
Just in case it causes issues
|
2012-06-25 00:57:26 +09:30 |
|
bcoles
|
7fde875d8a
|
Changed default target IP address to http://192.168.100.1/ for the
virgin_superhub_csrf module
|
2012-06-24 22:21:19 +09:30 |
|
bcoles
|
ebe205ad36
|
Updated a couple of module configs
modules/exploits/router/virgin_superhub_csrf/config.yaml
modules/misc/local_file_theft/config.yaml
|
2012-06-24 20:44:06 +09:30 |
|
bcoles
|
1bf9061c1a
|
Added a couple of CSRF modules:
o ./modules/exploits/boastmachine_3_1_add_user_csrf/
o ./modules/exploits/axous_1_1_1_add_user_csrf/
Updated a few exploit titles
|
2012-06-24 17:10:37 +09:30 |
|
bcoles
|
771d6d60f9
|
Added Virgin Superhub CSRF module
Fixes issue #703
|
2012-06-24 15:22:35 +09:30 |
|
bcoles
|
40f8b528aa
|
Moved a few modules from modules/exploits/ to modules/exploits/local_host:
activex_command_execution
mozilla_nsiprocess_interface
window_mail_client_dos
java_payload
safari_launch_app
Added a couple of XSS modules:
cisco_collaboration_server_5_xss
serendipity_1.6_xss
|
2012-06-24 03:10:54 +09:30 |
|
bcoles
|
853b4c5bcb
|
Added Spring Framework Malicious JAR module
Fixes issue #526
|
2012-06-23 22:45:48 +09:30 |
|
bmantra
|
3accb24b2b
|
Does not work in Opera due to cross domain issues. And cannot work in IE due to lack of sendAsBinary-functionality in xmlhttprequest. So removed the Base64-library and used atob instead.
|
2012-06-13 10:00:45 +02:00 |
|
bcoles
|
6f3298235f
|
Added IE to not_working for glassfish_war_upload_xsrf module
|
2012-06-07 13:29:59 +09:30 |
|
bcoles
|
6396f7aa5a
|
Fixes issue #688
Added spaces to comma delemetered data in config.yaml files
This should fix an issue reported to affect Ruby 1.9.2
|
2012-06-05 23:27:21 +09:30 |
|
root
|
8e7e546ef9
|
fixes #661
|
2012-06-03 19:53:33 +02:00 |
|
bcoles
|
981b13ce7b
|
Added huawei_smartax_mt880 CSRF module
|
2012-05-22 17:52:36 +09:30 |
|
bcoles
|
6739094f57
|
Added dlink_dcs_series_csrf module
|
2012-05-22 17:22:20 +09:30 |
|
bcoles
|
f8eba21cb4
|
Moved a few more modules and updated some module descriptions
|
2012-05-20 18:50:10 +09:30 |
|
bcoles
|
460b619cc1
|
Moved Router and Switch categories under Exploits category
Added Social Engineering category
|
2012-05-20 18:32:44 +09:30 |
|
bcoles
|
05deaaa8b5
|
Added Module: ActiveX Command Execution
|
2012-04-27 14:15:52 +09:30 |
|
bcoles
|
c1975691f4
|
Added a couple of 0day CSRF exploits for Zenoss Core <= 3.2.1
|
2012-03-07 15:02:12 +10:30 |
|
bcoles
|
591cef0732
|
Removed "notes:" node from three module config.yaml files
|
2012-02-09 23:01:14 +10:30 |
|
bcoles
|
bfd6f764aa
|
Added module Mozilla nsIProcess XPCOM Interface
This module is a port of the same module from BeEF-0.4.0.0
It has not been tested. It is currently disabled.
Part of issue 506
|
2012-01-10 17:29:07 +10:30 |
|
Wade Alcorn
|
06899ca267
|
Year updated from 2011 to 2012
|
2011-12-31 22:24:36 +10:00 |
|
antisnatchor
|
894e03da9c
|
Fixes issue 555: fixed using the attachApplet JS api in the malicious Java applet module.
git-svn-id: https://beef.googlecode.com/svn/trunk@1417 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
|
2011-11-07 18:36:19 +00:00 |
|
wade@bindshell.net
|
1f6a13cd9a
|
Launch App module description updated
git-svn-id: https://beef.googlecode.com/svn/trunk@1410 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
|
2011-11-06 22:46:41 +00:00 |
|
bcoles@gmail.com
|
16c29cdf53
|
Updated Malicious Java Payload description.
Changed default connect-back host address to the BeEF host address.
git-svn-id: https://beef.googlecode.com/svn/trunk@1409 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
|
2011-11-06 17:11:15 +00:00 |
|
antisnatchor
|
c4d5b30b60
|
(Fixes issue 434) First works with the malicious Java applet. Tons of work to come in the next releases (OMG) :-)
git-svn-id: https://beef.googlecode.com/svn/trunk@1387 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
|
2011-11-01 12:06:58 +00:00 |
|
antisnatchor
|
b6a8205b27
|
(Fixes issue 547) added module for Safari exploit (CVE-2011-3230)
git-svn-id: https://beef.googlecode.com/svn/trunk@1373 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
|
2011-10-19 18:47:55 +00:00 |
|
bcoles@gmail.com
|
bd26b9bea4
|
Fixed typo
git-svn-id: https://beef.googlecode.com/svn/trunk@1335 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
|
2011-10-01 08:28:04 +00:00 |
|
wade@bindshell.net
|
e97104f696
|
command modules re-organised and re-named
git-svn-id: https://beef.googlecode.com/svn/trunk@1292 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
|
2011-09-16 12:28:14 +00:00 |
|