Carter Brainerd
|
2d1cecd4d5
|
Fix request pattern matching
|
2019-01-23 13:39:52 -05:00 |
|
Carter Brainerd
|
47fd066a29
|
Msftidy
|
2019-01-22 21:06:11 -05:00 |
|
Carter Brainerd
|
1f56bccf31
|
Small improvements from review
|
2019-01-22 20:46:28 -05:00 |
|
Carter Brainerd
|
1121ce1127
|
Change default filename to random
|
2019-01-17 20:12:53 -05:00 |
|
Carter Brainerd
|
8cd26b74d7
|
Please msftidy gods
|
2019-01-13 19:22:51 -05:00 |
|
Carter Brainerd
|
171d46db9b
|
Add disclosure date, more references, and authors
|
2019-01-13 19:11:05 -05:00 |
|
Carter Brainerd
|
89e8ff9c80
|
Update office_excel_slk.rb
|
2019-01-13 18:08:51 -05:00 |
|
Carter Brainerd
|
d88d1d0f1d
|
Create office_excel_slk.rb
|
2019-01-13 17:31:34 -05:00 |
|
William Vu
|
c9473f8cbc
|
Land #9473, new MS17-010 aux and exploit modules
|
2018-02-01 23:56:29 -06:00 |
|
zerosum0x0
|
ffc7e078e2
|
don't disconnect until cleanup
|
2018-02-01 21:46:56 -07:00 |
|
h00die
|
7cb0a118c1
|
Land #9399 a linux priv esc against apport and abrt
|
2018-02-01 21:54:54 -05:00 |
|
Brendan Coles
|
3c21eb8111
|
Update documentation
|
2018-02-02 02:27:13 +00:00 |
|
Brendan Coles
|
0d80ca6f79
|
Change documentation extension from rb to md
|
2018-01-31 23:26:30 +00:00 |
|
bwatters-r7
|
8be2b1f59e
|
Land # 9407, Add BMC Server Automation RSCD Agent RCE exploit module
Merge branch 'land-9407' into upstream-master
|
2018-01-31 13:35:29 -06:00 |
|
Jacob Robles
|
d4a0372238
|
Land #9457, Dup Scout Enterprise v10.4.16 - Import Command Buffer Overflow
|
2018-01-29 11:40:54 -06:00 |
|
zerosum0x0
|
7cc00c0e10
|
fixed padding/offsets for win 10
|
2018-01-28 21:10:51 -07:00 |
|
zerosum0x0
|
2723b328aa
|
misc tidying, added more randomness
|
2018-01-28 18:20:18 -07:00 |
|
zerosum0x0
|
6c2d5b1fc2
|
semi-completed exploit files
|
2018-01-28 18:13:25 -07:00 |
|
Brendan Coles
|
23f4bf1583
|
Add documentation
|
2018-01-27 03:15:06 +00:00 |
|
Aaron Soto
|
c390696ddf
|
Land #9379, Oracle Weblogic RCE exploit and documentation
|
2018-01-25 21:47:18 -06:00 |
|
William Vu
|
309deb9ee7
|
Land #9446, Post API fix for setuid_nmap
|
2018-01-25 16:00:40 -06:00 |
|
Daniel Teixeira
|
4cd5801e6f
|
Dup Scout Import Command Buffer Overflow
|
2018-01-24 20:47:46 +00:00 |
|
bwatters-r7
|
a27cfeaea9
|
Land #9416, Sync Breeze Enterprise 9.5.16 Import Command buffer overflow
Merge branch 'land-9416' into upstream-master
|
2018-01-23 16:35:51 -06:00 |
|
bwatters-r7
|
3922844650
|
ninja style changes
|
2018-01-23 16:34:49 -06:00 |
|
bwatters-r7
|
685a950077
|
Land #9114, Add module for Kaltura <= 13.1.0 RCE (CVE-2017-14143)
Merge branch 'land-9114' into upstream-master
|
2018-01-23 12:35:59 -06:00 |
|
William Vu
|
5684b9ed7c
|
Readd dropped return during refactoring
|
2018-01-23 10:12:15 -06:00 |
|
William Vu
|
d3b3946669
|
Use Msf::Post::File#setuid? in setuid_nmap
|
2018-01-23 02:05:26 -06:00 |
|
Brent Cook
|
aae77fc1a4
|
Land #9349, GoAhead LD_PRELOAD CGI Module
|
2018-01-22 23:10:36 -06:00 |
|
Brent Cook
|
d1569f8280
|
Land #9413, Expand the number of class names searched when checking for an exploitable JMX server
|
2018-01-22 16:49:01 -06:00 |
|
Brent Cook
|
682c915a09
|
Land #9267, Add targets to sshexec
|
2018-01-22 09:59:48 -06:00 |
|
Kevin Kirsche
|
c7d3b5dfbb
|
Update payload and disable check functionality
The check functionality is broken as MSF cannot handle HttpServer and HttpClient at this time.
The payloads were updated to ensure CVE-2017-10271 is being exploited instead of CVE-2017-3506 as explained on https://blog.nsfocusglobal.com/threats/vulnerability-analysis/technical-analysis-and-solution-of-weblogic-server-wls-component-vulnerability/
|
2018-01-18 13:26:44 -05:00 |
|
bwatters-r7
|
4c11eae774
|
Maybe that timeout is needed.....
|
2018-01-17 13:21:36 -06:00 |
|
Philippe Tranca
|
35bec8d3cd
|
Fixed classes names and added RMI interfaces
|
2018-01-17 17:10:36 +01:00 |
|
Philippe Tranca
|
d345008b20
|
Added all the classes that implement RMI server
|
2018-01-17 17:03:32 +01:00 |
|
bwatters-r7
|
f439edfa1a
|
Fixes by the fabled wvu
|
2018-01-17 08:20:52 -06:00 |
|
Daniel Teixeira
|
aa9b5e4419
|
Sync Breeze Enterprise Import Command
|
2018-01-15 20:46:40 +00:00 |
|
Christian Mehlmauer
|
2f9eebe28b
|
remove plugin dir
|
2018-01-15 14:48:59 +01:00 |
|
Philippe Tranca
|
dfb9941e95
|
Fix java_jmx_server exploit
Add test case when discovering RMI endpoint as the previous one was not complete
|
2018-01-15 12:13:09 +01:00 |
|
Nicky Bloor
|
333ee893d3
|
Tidied up platform detection, check method, and minor typos.
|
2018-01-14 18:28:40 +00:00 |
|
Brendan Coles
|
e1cbe4e906
|
Rename apport_chroot_priv_esc to apport_abrt_chroot_priv_esc
|
2018-01-14 08:33:43 +00:00 |
|
Brendan Coles
|
c234d0523a
|
Add support for abrt on Fedora
|
2018-01-14 08:33:10 +00:00 |
|
Nicky Bloor
|
6568d29b67
|
Add BMC Server Automation RSCD Agent RCE exploit module.
|
2018-01-14 01:12:55 +00:00 |
|
Brendan Coles
|
2f3e3b486a
|
Use cross-compiled exploit
|
2018-01-13 05:44:42 +00:00 |
|
Brendan Coles
|
842736f7b1
|
register_dir_for_cleanup
|
2018-01-12 14:21:43 +00:00 |
|
Agahlot
|
488f27bf76
|
Small Typo
|
2018-01-12 07:05:30 -05:00 |
|
Brendan Coles
|
8bbffd20cd
|
Add Apport chroot Privilege Escalation exploit
|
2018-01-12 07:25:35 +00:00 |
|
Kevin Kirsche
|
04e4ff6b3c
|
Use stop_service to avoid cleanup overload
|
2018-01-11 19:14:26 -05:00 |
|
Kevin Kirsche
|
40f54df129
|
Feedback updates
|
2018-01-11 18:54:58 -05:00 |
|
Kevin Kirsche
|
172ffdfea1
|
Use geturi instead of building it ourselves
|
2018-01-11 18:27:56 -05:00 |
|
Wei Chen
|
e6c4fb1dab
|
Land #9269, Add a new target for Sync Breeze Enterprise GET BoF
Land #9269
|
2018-01-11 16:54:23 -06:00 |
|