Skip to content

Latest commit

 

History

History
82 lines (64 loc) · 2.46 KB

TODO.rst

File metadata and controls

82 lines (64 loc) · 2.46 KB

TODO

High Priority

Medium Priority

  • Feature: Do not re-run checks already done
  • info --services -> categories supported with nb of commands for each service
  • Code quality: enum with auto numbering (aenum?)
  • info --checks-categories
  • argcomplete

Low Priority

Bug fixes

  • SmartModule HTTP: post-check method "cmseek_detect_cms"

TOOLS/CHECKS:

Not sure: * Yasuo ?? https://github.com/0xsauby/yasuo (for ssh ?) * https://www.magereport.com * https://github.com/AlisamTechnology/PRESTA-modules-shell-exploit/blob/master/PRESTA-shell-exploit.pl * https://github.com/breenmachine/JavaUnserializeExploits * arachni * https://github.com/DanMcInerney/pentest-machine

  • Java-RMI -> handle case windows ping -n
  • Better exploit for MS17-010 (support for more win versions, only Win7 and 2008 R2 for now)
  • Script for vuln lookup based on banner (vulners, exploit-db...)

Services:

  • NFS
  • MongoDB
  • RPC