因为需要添加许多漏洞的流量检测,所以需要模拟很多漏洞的利用过程,简单来说,就是抓漏洞利用过程的流量。

一个脚本对metasploit中的module中包含的cve字段进行提取,而后去重,得出metasploit中EXP默认支持的cve漏洞。

列表如下

CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
cve--
CVE--
CVE--
CVE--
CVE--
cve--
CVE--
cve--
cve--
cve--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
cve--
CVE--
CVE--
cve--
cve--
cve--
cve--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
CVE--
cve--
cve--
CVE--
CVE--
cve--
cve--
cve--
CVE--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
cve--
cve--
cve--
cve--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
CVE--
cve--
CVE--
CVE--
CVE--
cve--
CVE--
cve--
cve--
cve--
CVE--
CVE--
cve--
cve--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
cve--
cve--
cve--
cve--
cve--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
cve--
CVE--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
cve--
cve--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
cve--
cve--
CVE--
CVE--
cve--
cve--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
cve--
cve--
CVE--
cve--
cve--
CVE--
CVE--
cve--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
cve--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
cve--
cve--
CVE--
CVE--
cve--
CVE--
cve--
cve--
CVE--
CVE--
cve--
CVE--
cve--
CVE--
cve--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
cve--
cve--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
cve--
CVE--
CVE--
cve--
CVE--
CVE--
cve--
cve--
cve--
CVE--
CVE--
cve--
CVE--
cve--
cve--
cve--
CVE--
CVE--
cve--
cve--
cve--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
cve--
cve--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
CVE--
cve--
cve--
cve--
CVE--
cve--
CVE--
CVE--
cve--
CVE--
CVE--
CVE--

metasploit支持利用的CVE的更多相关文章

  1. Metasploit漏洞利用,三个入侵主机实战案例

    受害者主机 windows2003 ie模拟工具ietest ie5.5/6/7/ 漏洞:MS10_002,MS10_018,MS12-020 ---------------------------- ...

  2. IDEA02 利用Maven创建Web项目、为Web应用添加Spring框架支持、bean的创建于获取、利用注解配置Bean、自动装配Bean、MVC配置

    1 环境版本说明 Jdk : 1.8 Maven : 3.5 IDEA : 专业版 2017.2 2 环境准备 2.1 Maven安装及其配置 2.2 Tomcat安装及其配置 3 详细步骤 3.1 ...

  3. 《Metasploit渗透测试魔鬼训练营》第一章读书笔记

    第1章 魔鬼训练营--初识Metasploit 20135301 1.1 什么是渗透测试 1.1.1 渗透测试的起源与定义 如果大家对军事感兴趣,会知道各国军队每年都会组织一些军事演习来锻炼军队的攻防 ...

  4. 20145330 《网络对抗》 Eternalblue(MS17-010)漏洞复现与S2-045漏洞的利用及修复

    20145330 <网络对抗> Eternalblue(MS17-010)漏洞利用工具实现Win 7系统入侵与S2-045漏洞的利用及修复 加分项目: PC平台逆向破解:注入shellco ...

  5. Metasploit 使用简介

    Metasploit Framework 是非常优秀的开源渗透测试框架,像我这样的菜鸟刚刚听说,于是花时间好好研究了一下,整理了一下学习笔记,贴出来和大家一起交流.第一次写文章又不足的地方大家多多指点 ...

  6. 《metasploit渗透测试魔鬼训练营》学习笔记第九章--meterpreter

    七.强大的meterpreter  7.1再探metasploit的攻击载荷模块     7.1.1典型的攻击载荷模块     metasploit涵盖了各大主流操作系统和平台,其中绝大部分是远程漏洞 ...

  7. metasploit 读书笔记-信息收集

    三、信息收集 被动信息收集 在不接触目标系统时进行的信息收集,包括使用工具Yeti、Whois (1)Whois msf > whois secmaniac.net (2)Netcraft:fi ...

  8. Metasploit Framework(MSF)的使用

    目录 Metasploit 安装Metasploit 漏洞利用(exploit) 攻击载荷(payload) Meterpreter MS17_010(永恒之蓝) 辅助模块(探测模块) 漏洞利用模块 ...

  9. CSRF简单介绍及利用方法-跨站请求伪造

    0x00 简要介绍 CSRF(Cross-site request forgery)跨站请求伪造,由于目标站无token/referer限制,导致攻击者可以用户的身份完成操作达到各种目的.根据HTTP ...

随机推荐

  1. 为 Confluence 6 分发包设置一个邮件会话

    最简单设置 Confluence 电子邮件发服务器的方否认就是通过 Confluence 的管理员控制台进行设置.请参考 Configuring a Server for Outgoing Mail ...

  2. 使用 Jira 和 Confluence 6 在一起

    这个过程是有趣的过程.请参考 Use Jira applications and Confluence together 文档来找到有关整合的相关内容,能够在后续的开发中更多的节省时间,以及你需要安装 ...

  3. Django知识点汇总

    Python的WEB框架有Django.Tornado.Flask 等多种,Django相较与其他WEB框架其优势为:大而全,框架本身集成了ORM.模型绑定.模板引擎.缓存.Session等诸多功能. ...

  4. Repair the Wall

    问题 : Repair the Wall 时间限制: 1 Sec  内存限制: 128 MB 题目描述 Long time ago , Kitty lived in a small village. ...

  5. 基于“MVC”框架集设计模式,开发用户管理系统!

    MVC----(Model View Controller)设计模型: M:表示业务数据和业务规则.包括DAO(beans).DBHelper(DBHelper),用于封装数据库连接,业务数据库处理. ...

  6. springboot多环境(dev、test、prod)配置

    propertiest配置格式在Spring Boot中多环境配置文件名需要满足application-{profile}.properties的格式,其中{profile}对应你的环境标识,比如: ...

  7. Oracle索引(Index)介绍使用

    1.什么是引 索引是建立在表的一列或多个列上的辅助对象,目的是加快访问表中的数据:Oracle存储索引的数据结构是B*树,位图索引也是如此,只不过是叶子节点不同B*数索引:索引由根节点.分支节点和叶子 ...

  8. JAVA,字符串替换

    package l515; //例5.15 //字符串替换 public class NewStr { public static void main(String[] args) { String ...

  9. RxJava2.0相关教程

    这可能是最好的RxJava 2.x 教程(完结版) https://www.jianshu.com/p/0cd258eecf60 RxJava2.0——从放弃到入门 https://www.jians ...

  10. [LeetCode] Best Time to Buy and Sell Stock 6道合集【DP】

    1. Best Time to Buy and Sell Stock 2. Best Time to Buy and Sell Stock II 3. Best Time to Buy and Sel ...