Pedro Ribeiro
e7196256d4
Update rockwell_factorytalk_rce.md
2020-11-19 17:53:25 +07:00
William Vu
d3f16c7061
Land #14361 , COOKIE for sharepoint_ssi_viewstate
2020-11-18 15:55:19 -06:00
William Vu
dcd8ec1d70
Lock JDK to 8u131 to be safe
2020-11-18 15:17:12 -06:00
William Vu
20a90557bf
Update module doc
2020-11-18 15:08:12 -06:00
William Vu
bcdf5aa586
Clarify Windows target setup further
2020-11-18 14:25:10 -06:00
William Vu
4d610b5500
Clarify using the generic installer for examples
2020-11-18 14:06:13 -06:00
William Vu
83beae731f
Add WebLogic Administration Console Handle RCE
...
CVE-2020-14882
CVE-2020-14883
2020-11-18 10:56:02 -06:00
William Vu
f73a88a39c
Land #14396 , hadoop_unauth_exec clarification
2020-11-16 12:44:13 -06:00
Tod Beardsley
0feff932f2
Change docs to reflect the truth of the "vuln"
2020-11-16 11:38:00 -06:00
SunCSR Team
2d99a07b12
Update and rename documentation/modules/exploit/windows/http/tomcat_ghostcat.md to documentation/modules/auxiliary/admin/http/tomcat_ghostcat.md
2020-11-16 21:03:00 +07:00
SunCSR Team
1bd6b75394
Create tomcat_ghostcat.md
2020-11-16 15:08:14 +07:00
SunCSR Team
c7f6188c70
Delete tomcat_ghostcat.md
2020-11-16 15:06:28 +07:00
SunCSR Team
3b95835f5e
Rename apache_tomcat_ghostcat.md to tomcat_ghostcat.md
2020-11-16 14:56:33 +07:00
SunCSR Team
cc1d335251
Add apache_tomcat_ghostcat.md
2020-11-16 14:44:49 +07:00
Christophe De La Fuente
d6b412c58e
Land #14340 , Add HorizontCMS 1.0.0-beta exploit module and documentation
2020-11-13 13:03:04 +01:00
William Vu
fcb507e412
Fix AutoCheck
...
I'm a big dummy.
2020-11-11 15:57:38 -06:00
William Vu
04bcbd0253
Update module doc
2020-11-11 15:57:29 -06:00
William Vu
42bdae919b
Add SaltStack Salt REST API RCE (CVE-2020-16846)
...
Leveraging CVE-2020-25592.
2020-11-11 13:09:26 -06:00
Shelby Pace
65e1ef4cb8
Land #14253 , add wp-file-manager rce for wordpress
2020-11-10 08:48:33 -06:00
Tim W
e14813485a
Land #14331 , add msfvenom apk template cmd injection exploit
2020-11-10 17:33:10 +08:00
adfoster-r7
a0106aa603
Land #14269 , Add Apache Zookeeper Information Disclosure Auxiliary Module
2020-11-09 20:12:35 +00:00
Grant Willcox
34697ecc11
Apply further fixes from the review process
2020-11-09 12:11:25 -06:00
stasinopoulos
2ee9b47023
Minor update regrarding Options section
2020-11-09 08:59:14 +02:00
h00die
da70b74954
fix version numbers
2020-11-08 22:38:53 -05:00
h00die
3c4962e9b0
working and clean
2020-11-08 22:31:26 -05:00
stasinopoulos
ad5b0af9c6
Fixes n' updates
2020-11-08 10:26:31 +02:00
Christophe De La Fuente
55ccc42cde
Land #14319 , wp_Loginizer unauth sqli (CVE-2020-27615)
2020-11-05 15:36:10 +01:00
kalba-security
e7a20ec47c
Add CVE ID to module and docs
2020-11-05 07:05:32 -05:00
kalba-security
0a9589166f
Add CVE ID
2020-11-05 06:55:37 -05:00
Justin Steven
34715de016
Add jdk to msfvenom's APK template dependencies
2020-11-05 20:13:52 +10:00
cgranleese-r7
70985a09e2
Merge pull request #14280 from h00die/mikrofileread
...
Land #14280 , Mikrotik unauthenticated directory traversal file read
2020-11-05 09:27:47 +00:00
Karn Ganeshen
55daaecc7b
doc updated
2020-11-05 04:06:53 +05:30
h00die
dff6a21742
add wp version check
2020-11-04 11:45:06 -05:00
kalba-security
8aceea1872
Add flexdotnetcms_upload_exec module and docs
2020-11-03 09:50:28 -05:00
Spencer McIntyre
708de57499
Land #14297 , Modified zabbix login to work with newer versions of zabbix
2020-11-02 15:59:22 -05:00
Grant Willcox
7b72120016
Land #14252 , Update Avira password gatherer module and associated libaries and add in documentation
2020-11-02 14:37:47 -06:00
kalba-security
cf954888da
Add horizontcms_upload_exec module and documentation
2020-11-02 13:01:13 -05:00
Justin Steven
cb14287cb2
Add metasploit_msfvenom_apk_template_cmd_injection
2020-10-31 11:28:28 +10:00
h00die
6944e67f5c
add missing docs
2020-10-30 11:36:28 -04:00
h00die
f94acb94c9
cleanup
2020-10-29 10:46:14 -04:00
h00die
220b7ac922
add sqlmap directions
2020-10-28 15:50:08 -04:00
Che5hireC4t
996f58da26
Adding a documentation file.
2020-10-28 18:54:38 +01:00
h00die
0abdaf9f67
WIP
2020-10-27 21:30:46 -04:00
Graeme Robinson
bb9464801e
Make changes suggested in review
...
* Add better explanation of public-api-port option in documentation
* Add example in scenarios where admin API is on different host to
public API (therefore public-api-port option must be used)
* Add targeturi option
* Add version number that has been tested in 2 places in documentation
2020-10-27 21:13:45 +00:00
Quentin Kaiser
19befd79f4
Fix documentation.
2020-10-27 20:33:01 +01:00
Quentin Kaiser
d54be7d007
Merge branch 'master' into enum_pulsesecure
2020-10-27 20:07:25 +01:00
Grant Willcox
f1dc4fd6fc
Fix up the other Regex so it keeps backwards compatability and also supports newer versions
2020-10-26 17:55:19 -05:00
Grant Willcox
bd57832494
First round of changes from review
2020-10-26 16:02:06 -05:00
Jared Stroud
c6690e6494
Adding Avast memory dump docs
2020-10-22 19:34:14 -04:00
Brendan Coles
6258d5b561
Land #14296 , Move mercury_login module docs to documentation directory
2020-10-22 13:24:54 +00:00