Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP
tag: 2012082202
Commits on Aug 27, 2012
  1. @todb

    Added java_jre17_exec

    jvazquez-r7 authored todb committed
Commits on Aug 23, 2012
  1. @todb
  2. @todb

    Fixes load order with reverse http

    todb authored
    This was originally intended to fix #664.
    
    SEERM #7141 also.
  3. @todb
  4. @todb

    Revert "Reapplying commit d266dc6"

    todb authored
    This reverts commit d612d2a.
  5. @egypt

    Fix load order issue

    egypt authored
    [See #664][SeeRM #7141]
Commits on Aug 22, 2012
  1. @todb
  2. @todb

    Reapplying commit d266dc6

    todb authored
    Somewhere along the way, commit d266dc6
    was dropped. Reimplementing.
  3. heap spray from flash works pretty well on ie9 too

    jvazquez-r7 authored
  4. added windows vista and w7 targets

    jvazquez-r7 authored
  5. @todb
  6. @todb

    Merge branch 'rage-alex-oui'

    todb authored
  7. @todb
  8. @sinn3r
  9. @sinn3r

    Give proper credit to Craig plus additional references

    sinn3r authored
    Craig first found the buffer overflow. But Matt found a more
    reliable way to exploit the flaw.
  10. @sinn3r
  11. @sinn3r
  12. @sinn3r
  13. @sinn3r

    Improve CVE-2012-1535

    sinn3r authored
Commits on Aug 21, 2012
  1. added module for XODA file upload RCE

    jvazquez-r7 authored
  2. @todb

    Some error handling on ntlm relayer

    todb authored
    Instead of a cryptic exception, let the user know if the HTTP target
    isn't actually asking for WWW-Authenticate.
    
    There are likely many more opportunities to catch errors, but this is
    the most obvious.
  3. @todb

    Removing bullet points from module description

    todb authored
    Due to the vagaries of various Metasploit module description viewers, we
    can't guarantee things like lists and bullet points render right.
    Descriptions should avoid using these things.
  4. @todb
  5. @sinn3r
  6. @sinn3r
  7. @sinn3r
  8. @sinn3r

    Merge branch 'claudijd-master'

    sinn3r authored
  9. @sinn3r

    Final cleanup

    sinn3r authored
  10. @claudijd

    Fixing Bug w/ XP Method & Improving formatting for smart_hashdump

    claudijd authored
    1.) Addressed obvious bug in registry read for XP hint gathering code
    2.) Cleaned up the formatting for smart_hashdump which needed
    additional tabs
  11. badchars fixed

    jvazquez-r7 authored
  12. added module for ESVA Command Injection Vulnerability

    jvazquez-r7 authored
  13. @webstersprodigy
  14. @claudijd

    Added XP Support and Changed Output Method for User Password Hints

    claudijd authored
    1.) Now grabs clear-text user hint from XP systems in addition to
    Win7/Win8 systems
    2.) Changes output so it's no longer inline with hashes as not to
    affect copy/paste of hashes output
    3.) Adding alternate text in cases when no user hints are available
Commits on Aug 20, 2012
  1. @sinn3r
  2. @sinn3r
Something went wrong with that request. Please try again.