adfoster-r7
|
22f88f9ab7
|
Add docs
|
2022-03-08 23:52:24 +00:00 |
|
space-r7
|
7a9d30e5b1
|
Land #16227, add wp masterstudy privesc module
|
2022-03-07 10:58:23 -06:00 |
|
h00die
|
86cad29799
|
wp masterstudy review
|
2022-03-06 08:07:20 -05:00 |
|
Jake Baines
|
fbdb6614bc
|
Initial version of CVE-2021-4191 GitLab user enumeration
|
2022-03-01 06:57:39 -08:00 |
|
space-r7
|
0d10409d67
|
Land #16131, add modern events calendar sqli
|
2022-02-28 12:27:45 -06:00 |
|
h00die
|
2195edbb8d
|
masterstudy privesc
|
2022-02-25 16:36:47 -05:00 |
|
Grant Willcox
|
a500435080
|
Land #16182, wordpress Secure Copy COntent Protection and Content Locking Unauthenticated SQLi (CVE-2021-24931)
|
2022-02-24 15:55:29 -06:00 |
|
Grant Willcox
|
9b53ed5f5c
|
Add final randomization parts before landing
|
2022-02-24 15:43:21 -06:00 |
|
h00die
|
dc5209e412
|
vnc docs and fixes
|
2022-02-24 16:42:36 -05:00 |
|
Grant Willcox
|
8d080135bb
|
First round of review edits
|
2022-02-24 13:46:33 -06:00 |
|
adfoster-r7
|
dc301a12bd
|
Land #16156, Authenticated Microweber v1.2.10 Local File Inclusion
|
2022-02-22 18:20:59 +00:00 |
|
bwatters
|
0239ef1cc6
|
Land #16117, Updates for Log4Shell
|
2022-02-15 16:39:00 -06:00 |
|
Grant Willcox
|
e203548213
|
Land #16087, Grandstream UCM62xx IP PBX Websocket Blind SQL Injection Credential Dump
|
2022-02-15 11:11:11 -06:00 |
|
Jake Baines
|
14234e467a
|
Moved to aux/gather. Implemented autocheck. Added failure on websocket error
|
2022-02-15 06:23:19 -08:00 |
|
Grant Willcox
|
c8f63e30cb
|
Fix minor issues from review
|
2022-02-14 14:15:17 -06:00 |
|
h00die
|
864ce9471f
|
wp_secure_copy sqli
|
2022-02-13 15:04:17 -05:00 |
|
talhak08
|
1ad54ba48d
|
The documentation edited and the defanged mode fixed
|
2022-02-10 21:13:31 +03:00 |
|
talhak08
|
c3a9b9a7c5
|
Edited the documentation
|
2022-02-08 04:17:43 +03:00 |
|
talhak08
|
138856765f
|
changed datastore's variable names and edited the documentation.
|
2022-02-08 04:14:45 +03:00 |
|
talhak08
|
b5e575dd1d
|
Documentation's been added
|
2022-02-08 03:53:12 +03:00 |
|
Christophe De La Fuente
|
fa849e51c3
|
Land #16137, Update PrintNightmare to use the moved DCERPC definitions
|
2022-02-07 16:54:09 +01:00 |
|
Christophe De La Fuente
|
f99438b9d1
|
Add target security settings info to the documentation
|
2022-02-07 16:48:34 +01:00 |
|
Spencer McIntyre
|
dd64dcf074
|
Finish the PetitPotam module with docs
|
2022-02-04 13:12:08 -05:00 |
|
h00die
|
11c67ce7d7
|
wp_modern_events_calendar_sqli
|
2022-02-02 19:21:42 -05:00 |
|
Spencer McIntyre
|
7c987a452d
|
Land #16130, Wordpress RegistrationMagic sqli
|
2022-02-02 10:50:13 -05:00 |
|
Spencer McIntyre
|
dda6c53144
|
Fix table alignment
|
2022-02-02 10:48:58 -05:00 |
|
h00die
|
00c1ac4da9
|
updated docs for registrationmagic
|
2022-02-01 16:17:36 -05:00 |
|
h00die
|
b71f9e7e45
|
wp_plugin RegistrationMagic sqli
|
2022-01-30 16:08:06 -05:00 |
|
Jake Baines
|
3371051f11
|
Switch to using the sqli library
|
2022-01-30 05:16:01 -08:00 |
|
Jake Baines
|
65c296818f
|
Addressed review items
|
2022-01-30 03:48:31 -08:00 |
|
Jake Baines
|
f9c113f63d
|
Addressed various review items
|
2022-01-30 03:42:15 -08:00 |
|
Spencer McIntyre
|
919185257d
|
Update the URL to the archive for struts2
|
2022-01-28 16:17:48 -05:00 |
|
Jake Baines
|
e7198f7e20
|
Module for dumping the users table from Grandstream UCM62xx IP PBX before 1.20.22
|
2022-01-22 04:10:35 -08:00 |
|
Christophe De La Fuente
|
e10331b22d
|
Land #15656, Allow authenticated user creation in vmware_vcenter_vmdir_auth_bypass
|
2022-01-13 17:04:12 +01:00 |
|
Christophe De La Fuente
|
b0743e15d9
|
Update documentation and fix vulnarable/non-vulnerable status message
|
2022-01-12 16:51:40 +01:00 |
|
space-r7
|
199eae5e99
|
Land #16012, add pi-hole aux module and lib
|
2022-01-12 09:21:11 -06:00 |
|
space-r7
|
bb00575acb
|
add command for starting docker env
|
2022-01-11 17:07:36 -06:00 |
|
h00die
|
4df91dd3ec
|
f5 big-ip module and doc updates
|
2022-01-07 12:17:43 -05:00 |
|
Paul-Emmanuel Raoul
|
89ec0a8434
|
Add the output of 'notes' to the documentation
|
2022-01-07 12:17:43 -05:00 |
|
Paul-Emmanuel Raoul
|
fcb2a06a98
|
Remove an unnecessary line in the documentation
|
2022-01-07 12:17:43 -05:00 |
|
Paul-Emmanuel Raoul
|
411e062738
|
Change domain name example in verification steps
|
2022-01-07 12:17:43 -05:00 |
|
Paul-Emmanuel Raoul
|
17ec7c6255
|
Add documentation
|
2022-01-07 12:17:43 -05:00 |
|
Christophe De La Fuente
|
ae2e4d723b
|
Add NTDS technique
|
2022-01-03 21:39:33 +01:00 |
|
h00die
|
87031de384
|
fix doc numbering
|
2022-01-02 11:57:32 -05:00 |
|
h00die
|
8a1ac9d51d
|
move pihole docs
|
2022-01-02 11:56:04 -05:00 |
|
h00die
|
c3e0f455ec
|
some cleanup for rubocop
|
2021-12-30 15:35:22 -05:00 |
|
Spencer McIntyre
|
d08714d474
|
Land #15961, Initial Rex LDAP Server
|
2021-12-28 14:50:03 -05:00 |
|
Spencer McIntyre
|
d82b9ecb47
|
Add module docs for the ldap server module
|
2021-12-28 13:52:12 -05:00 |
|
bwatters
|
6727c1b344
|
Land #15954, Add Grafana file read (CVE-2021-43798)
Merge branch 'land-15954' into upstream-master
|
2021-12-20 09:54:15 -06:00 |
|
h00die
|
cb348f06c4
|
move grafana plugins out to data
|
2021-12-19 16:18:05 -05:00 |
|