Spencer McIntyre
|
abe0549db6
|
Land #17226, Module to request TGT/TGS tickets
Module to request TGT/TGS Kerberos tickets from the KDC
|
2022-11-28 11:59:17 -05:00 |
|
Spencer McIntyre
|
009c6c5350
|
Add the MaxBackendRetries datastore option
|
2022-11-28 09:45:04 -05:00 |
|
ErikWynter
|
78dfaa12ef
|
add opentsdb_yrange_cmd_injection module and docs
|
2022-11-24 21:37:24 +02:00 |
|
adfoster-r7
|
0aa0884e26
|
Land #17296, add warning about external links
|
2022-11-24 10:30:44 +00:00 |
|
Spencer McIntyre
|
6350daf2d8
|
Land #17273, F5 exploit module CVE-2022-41800
F5 exploit module CVE-2022-41800 (authenticated RCE in RPM code)
|
2022-11-23 17:57:18 -05:00 |
|
Ron Bowes
|
28a68ede8c
|
Merge branch 'master' into zimbra-fixes
|
2022-11-23 12:50:56 -08:00 |
|
Jeffrey Martin
|
453cfc5939
|
spelling change per review
Co-authored-by: adfoster-r7 <60357436+adfoster-r7@users.noreply.github.com>
|
2022-11-23 13:26:19 -06:00 |
|
Ron Bowes
|
4fd22226fe
|
Combine into one module with options to turn features on/off
|
2022-11-23 11:10:34 -08:00 |
|
Jeffrey Martin
|
cb8e023734
|
add warning about external links
Links to external resources not controlled by the project maintainers
are subject to bitrot and malicious take over. Warnings seem appropriate.
|
2022-11-23 12:08:05 -06:00 |
|
Spencer McIntyre
|
3f58bfe11e
|
Check that the target is Exchange Server 2019
|
2022-11-23 10:47:10 -05:00 |
|
Heyder Andrade
|
13a3d9d1ca
|
Added documentation
|
2022-11-23 00:19:25 +01:00 |
|
h00die
|
181b8e4eea
|
review comments
|
2022-11-21 15:53:37 -05:00 |
|
h00die
|
d4536b24a6
|
remote control collection rce
|
2022-11-21 15:53:37 -05:00 |
|
Spencer McIntyre
|
ed99f2f67f
|
Bypass EEMS M1
|
2022-11-21 11:13:16 -05:00 |
|
h00die
|
6877304bac
|
exploit for cve-2021-22015 vcenter priv esc
|
2022-11-20 11:29:49 -05:00 |
|
bcoles
|
ad36f28ec1
|
enum_psk: Cleanup
|
2022-11-21 00:28:34 +11:00 |
|
h00die
|
7a795c5adb
|
docs
|
2022-11-19 10:37:36 -05:00 |
|
h00die
|
9a19c4411d
|
wrap up module additions
|
2022-11-19 10:37:36 -05:00 |
|
Grant Willcox
|
8ca7550062
|
Land #17257, Adding exploit for ChurchInfo 1.2.13-1.3.0 RCE (CVE-2021-43258)
|
2022-11-18 19:27:10 -06:00 |
|
Grant Willcox
|
237eb904d4
|
Add in fixes for documentation examples and then update the code to fix some bugs
|
2022-11-18 18:30:07 -06:00 |
|
Grant Willcox
|
713323f2cb
|
Add in Docker setup documentation
|
2022-11-18 18:22:11 -06:00 |
|
Grant Willcox
|
85a6770973
|
Add additional checks, a check method, and fix up some doc errors
|
2022-11-18 18:22:06 -06:00 |
|
m4lwhere
|
b9ecdb3bc2
|
Use TARGETURI, registered cleanup, implment cookie_jar, and perform response checks and documentation
|
2022-11-18 18:21:27 -06:00 |
|
m4lwhere
|
a33a313544
|
Adding exploit for ChurchInfo 1.3.0
|
2022-11-18 18:21:08 -06:00 |
|
Spencer McIntyre
|
bc89721d7a
|
Add module docs, fix ProxyShell versions
|
2022-11-18 17:42:27 -05:00 |
|
space-r7
|
3d5708e3e6
|
Land #17271, add f5 big-ip csrf exploit
|
2022-11-18 16:19:09 -06:00 |
|
npm-cesium137-io
|
6f885ba700
|
Add solarwinds_orion_dump post module
Post module for extracting encrypted credentials from SolarWinds Orion
NPM. Tested on the 2020 version.
|
2022-11-18 10:40:10 -05:00 |
|
Christophe De La Fuente
|
5280580c08
|
Fixes from code review
|
2022-11-18 11:02:32 +01:00 |
|
space-r7
|
162b0daf3b
|
add new options and usage of pre-compiled exploit
also updates documentation with new option
descriptions
|
2022-11-17 17:20:41 -06:00 |
|
h00die
|
496a6f74ff
|
remove verbiage of list
|
2022-11-17 16:49:11 -05:00 |
|
Spencer McIntyre
|
b2f6f0c792
|
Update the module docs for ESC2 and ESC3
|
2022-11-17 12:12:35 -05:00 |
|
Spencer McIntyre
|
f4a65a220a
|
Support ON_BEHALF_OF in icpr_cert
Add the code necessary to request certificates on behalf of other users.
This is necessary to exploit templates vulnerable to ESC2 and ESC3.
|
2022-11-17 12:12:35 -05:00 |
|
Christophe De La Fuente
|
d1a7170020
|
Land #17021, Gitea Git fetch RCE module - CVE-2022-30781
|
2022-11-17 12:28:29 +01:00 |
|
Ron Bowes
|
fc579fe3f4
|
Add a privesc module for F5, using the MCP protocol
|
2022-11-16 12:12:16 -08:00 |
|
Ron Bowes
|
944fd07502
|
Add three post-modules and a mixin for communicating with F5's MCP
|
2022-11-16 12:09:58 -08:00 |
|
Ron Bowes
|
d0e109b842
|
Check in exploit module for CVE-2022-41800
|
2022-11-16 12:04:18 -08:00 |
|
Ron Bowes
|
99e661cfcf
|
Check in exploit script for CVE-2022-41622 (CSRF into SOAP)
|
2022-11-16 11:58:15 -08:00 |
|
space-r7
|
27d4f45e09
|
add documentation and exploit file
|
2022-11-15 12:55:00 -06:00 |
|
Christophe De La Fuente
|
494c9601ca
|
Land #17222, Pre-authenticated Remote Code Execution in VMware NSX Manager using XStream [CVE-2021-39144]
|
2022-11-15 14:16:14 +01:00 |
|
h00die
|
f6eba6a836
|
updated bloodhound module
|
2022-11-13 14:29:28 -05:00 |
|
adfoster-r7
|
65f6aaca82
|
Land #17077, Add support for AES keys for silver/golden ticket forging
|
2022-11-09 16:51:11 +00:00 |
|
Dean Welch
|
23ff829e52
|
Add support for AES keys for silver/golden ticket forging
|
2022-11-09 13:01:13 +00:00 |
|
adfoster-r7
|
3599221002
|
Land #17229, add post/multi/recon/reverse_lookup module
|
2022-11-09 11:28:45 +00:00 |
|
Christophe De La Fuente
|
37fd441b0f
|
Land #17117, Authenticate to Kerberos with PKINIT
|
2022-11-08 18:54:03 +01:00 |
|
Grant Willcox
|
416cf78ae2
|
Land #17149, Update ssl_version module to be useful
|
2022-11-07 15:59:50 -06:00 |
|
Grant Willcox
|
a6323a4735
|
Update examples for documentation to reflect recent code changes
|
2022-11-07 15:10:47 -06:00 |
|
Christophe De La Fuente
|
946eb1e546
|
Add documentation
|
2022-11-07 20:19:43 +01:00 |
|
Spencer McIntyre
|
ed7d458f07
|
Land #17122, Add in ESC Finder Module (ESC1-ESC3)
|
2022-11-07 11:53:15 -05:00 |
|
Christophe De La Fuente
|
929d4f2fa4
|
Land #17097, Gather Navicat
|
2022-11-07 12:30:16 +01:00 |
|
h00die-gr3y
|
bf0ed5b513
|
fixed some typos in documentation
|
2022-11-05 15:36:42 +00:00 |
|