JulienBedel
|
8f6dd43025
|
Add documentation
|
2021-01-18 12:02:46 +01:00 |
|
Shelby Pace
|
8e1cab0131
|
Land #14339, add flexdotnetcms rce
|
2020-12-07 14:28:01 -06:00 |
|
William Vu
|
20a90557bf
|
Update module doc
|
2020-11-18 15:08:12 -06:00 |
|
kalba-security
|
0a9589166f
|
Add CVE ID
|
2020-11-05 06:55:37 -05:00 |
|
kalba-security
|
8aceea1872
|
Add flexdotnetcms_upload_exec module and docs
|
2020-11-03 09:50:28 -05:00 |
|
William Vu
|
e4fb76d74f
|
Add version check to exchange_ecp_dlp_policy
And update modules/exploits/windows/http/sharepoint_ssi_viewstate.rb.
|
2020-10-20 14:32:43 -05:00 |
|
William Vu
|
3970b69734
|
Land #14229, Telerik UI for ASP.NET AJAX exploit
CVE-2017-11317 && CVE-2019-18935
|
2020-10-20 13:24:35 -05:00 |
|
William Vu
|
253928570b
|
Update module doc
|
2020-10-19 11:18:00 -05:00 |
|
William Vu
|
4cb08f7426
|
Address outstanding issues
|
2020-10-15 13:24:08 -05:00 |
|
William Vu
|
1a341ae931
|
Add SharePoint SSI and ViewState RCE
CVE-2020-16952
|
2020-10-14 17:45:15 -05:00 |
|
Spencer McIntyre
|
fb569a24ee
|
Add module documentation for Telerik RAU Deserialization
|
2020-10-07 13:40:10 -04:00 |
|
bwatters
|
3a6293357e
|
Land #14190, Add the DOMAIN option to the CVE-2020-0688 Exploit
Merge branch 'land-14190' into upstream-master
|
2020-10-05 12:12:21 -05:00 |
|
Spencer McIntyre
|
e7d2b73600
|
Add a DOMAIN option to CVE-2020-0688 for consistency with other modules
|
2020-09-28 09:24:39 -04:00 |
|
William Vu
|
03e0b9098c
|
Add more words about Exchange role groups
|
2020-09-16 12:55:08 -05:00 |
|
William Vu
|
e118ff1509
|
Add Microsoft Exchange Server DLP Policy RCE
CVE-2020-16875
|
2020-09-16 02:41:08 -05:00 |
|
Shelby Pace
|
6e2a7001a9
|
Land #13994, add Dlink Wifi manager rce
|
2020-08-18 09:34:19 -05:00 |
|
Niboucha Redouane
|
aec83d54cd
|
fix case of first character of sentence
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2020-08-17 21:06:18 +02:00 |
|
Niboucha Redouane
|
5487552afd
|
Fix some ponctuation, and character case
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2020-08-17 21:05:58 +02:00 |
|
Niboucha Redouane
|
df3107a99f
|
fix typo: privileged instead of privilegied
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2020-08-17 21:05:16 +02:00 |
|
William Vu
|
a6f7c0c0de
|
Backport miscellaneous fixes to my modules
|
2020-08-14 13:40:23 -05:00 |
|
Niboucha Redouane
|
3df276230a
|
write whole FTP link, looks like some browsers dropped FTP support, and markdown does not render it as a link
|
2020-08-13 15:19:33 +02:00 |
|
Niboucha Redouane
|
66d3b1cd59
|
Add exploit for CVE-2019-13372
|
2020-08-13 15:07:11 +02:00 |
|
Spencer McIntyre
|
4fa657d6eb
|
Fix a bunch of documentation typos and minor code cleanups
|
2020-07-29 16:30:44 -04:00 |
|
Spencer McIntyre
|
7af4297e86
|
Add the exploit for CVE-2020-1147
|
2020-07-29 11:58:38 -04:00 |
|
Shelby Pace
|
bf4d0bf6ee
|
Land #13828, add Zentao Pro rce
|
2020-07-22 09:42:11 -05:00 |
|
Shelby Pace
|
6c066a97ed
|
add bcoles suggestions
|
2020-07-22 09:39:17 -05:00 |
|
bwatters
|
eb863048f0
|
Land #13741, CVE-2020-5741: Plex rce on Windows
Merge branch 'land-13741' into upstream-master
|
2020-07-16 10:20:50 -05:00 |
|
bwatters
|
ceea94c368
|
Update docs for installation of target software
|
2020-07-16 10:16:48 -05:00 |
|
kalba-security
|
2d3588c0ad
|
Add suggestions from code review
|
2020-07-13 12:51:57 -04:00 |
|
kalba-security
|
6c4f975f97
|
Fix linting
|
2020-07-08 16:51:55 -04:00 |
|
kalba-security
|
470a0c9423
|
Add installation instructions to docs
|
2020-07-08 16:50:10 -04:00 |
|
kalba-security
|
1f631e20ad
|
Add zentao_pro_rce Windows exploit and docs
|
2020-07-08 15:13:45 -04:00 |
|
h00die
|
89332d0056
|
native python for plex unpickle
|
2020-07-03 19:37:18 -04:00 |
|
h00die
|
a99a3c2d75
|
working albumn_name length thanks to acammack
|
2020-06-30 00:28:57 -04:00 |
|
h00die
|
94cc286689
|
update docs and 401 handling code
|
2020-06-24 21:05:23 -04:00 |
|
h00die
|
533bed6b51
|
pre review updates
|
2020-06-22 06:30:44 -04:00 |
|
h00die
|
3dcf622ad6
|
add link to software
|
2020-06-20 00:12:05 -04:00 |
|
h00die
|
9defe33d9a
|
docs and working module
|
2020-06-20 00:06:46 -04:00 |
|
h00die
|
c2c931030f
|
review comments
|
2020-06-17 11:47:11 -04:00 |
|
h00die
|
4702d87684
|
cleanup
|
2020-06-12 10:46:44 -04:00 |
|
h00die
|
aec1f77b70
|
wip
|
2020-06-10 20:42:22 -04:00 |
|
h00die
|
b5c90ea20c
|
xpost working
|
2020-06-09 13:07:00 -04:00 |
|
William Vu
|
fe2ab51c8f
|
Update module doc
|
2020-05-21 18:37:13 -05:00 |
|
William Vu
|
55318baad5
|
Add module doc
|
2020-05-21 18:12:57 -05:00 |
|
William Vu
|
655088bb0d
|
Fix punctuation typo in exchange_ecp_viewstate
|
2020-05-20 09:47:11 -05:00 |
|
Spencer McIntyre
|
c128a3ba92
|
Add CmdStager and Powershell targets to the Kentico RCE exploit
|
2020-05-04 10:07:10 -04:00 |
|
Patrick Webster
|
626b9be63c
|
Update kentico_staging_syncserver.md
|
2020-05-04 09:26:14 -04:00 |
|
Patrick Webster
|
affc745ed5
|
Update documentation/modules/exploit/windows/http/kentico_staging_syncserver.md
Typo
Co-Authored-By: bcoles <bcoles@gmail.com>
|
2020-05-04 09:26:13 -04:00 |
|
Patrick Webster
|
376c61bc46
|
Added exploit module kentico_staging_syncserver.
|
2020-05-04 09:26:13 -04:00 |
|
William Vu
|
1318faa992
|
Clarify the quote is from the vendor's advisory
|
2020-04-27 16:53:34 -05:00 |
|