adfoster-r7
094d6ee36b
Add additional reliability and stability notes to modules
2024-01-22 23:29:57 +00:00
h00die
8beb6255cb
fix spelling in aux modules
2024-01-07 15:02:53 -05:00
h00die
c55290a44a
date and link on grafana dir traversal module
2023-11-02 07:43:01 -04:00
Spencer McIntyre
3bf4c0e7b1
Add the peer prefix to messages
2023-10-27 13:48:45 -04:00
Spencer McIntyre
1dc4e35134
Fix typos and log vulnerable servers
...
Log servers that are vulnerable but don't leak any cookies
2023-10-27 11:47:01 -04:00
Spencer McIntyre
94ede61a99
Add module docs
2023-10-26 09:52:59 -04:00
Spencer McIntyre
8bd976e118
Initial commit of Citrix Bleed (CVE-2023-4966)
2023-10-26 09:15:03 -04:00
h00die
8d79d5afbd
fix references
2023-09-18 06:56:18 -04:00
h00die
13e7f6cc27
fix related modules references
2023-09-15 16:35:55 -04:00
Simon Janusz
26cb5c7241
Land #18322 , Elasticsearch Memory Disclosure (CVE-2021-22145)
2023-09-07 16:11:40 +01:00
h00die
fb9f3bd13f
review comments
2023-09-01 20:14:41 -04:00
h00die
772978964e
elastic memory disclosure
2023-08-25 13:28:17 -04:00
h00die
d84c15cf21
lib and spec updates
2023-08-17 15:29:20 -04:00
h00die
7b024f21bd
apache nifi h2 rce
2023-08-08 17:44:35 -04:00
h00die
d6911f6b13
add new api endpoint, and checks for multiple versions
2023-07-09 19:48:16 -04:00
Grant Willcox
81cf6c2a09
Fix up credential storing code
2023-07-06 10:43:20 -05:00
Grant Willcox
c3aefe577b
Fix url_root loop code and user creation code
2023-07-06 09:36:19 -05:00
Grant Willcox
3abcb3ebaa
Explain ADMINID field more
2023-07-05 13:10:41 -05:00
Grant Willcox
ce19ce5b72
Apply fixes from review
2023-07-05 12:24:51 -05:00
Grant Willcox
da6cdd1d5b
Fix up datastore setting code
2023-07-05 10:55:14 -05:00
h00die
8d686e5a28
woocommerce payments auth bypass
2023-07-04 13:06:27 -04:00
h00die
375a315b3d
woocommerce payments auth bypass
2023-07-04 13:05:07 -04:00
adfoster-r7
085943bd78
Add Ruby 3.3.0-preview1 to test suite
2023-06-29 22:53:17 +01:00
dwelch-r7
e298788a28
Land #18049 , Update jenkins login scanner to work with newer versions
2023-06-22 14:04:24 +01:00
cgranleese-r7
0609d246f3
adds more future proofing to implementation
2023-06-21 14:19:24 +01:00
adfoster-r7
51dc30909a
Land #17670 , add module to exploit CVE-2019-16328
2023-06-14 23:30:33 +01:00
Grant Willcox
23451260af
Land #18064 , Add support for beta and prerelease versions to grafana_plugin_traversal
2023-06-07 14:33:31 -05:00
Grant Willcox
b923b0c8c3
Add in a typo fix
2023-06-07 11:34:00 -05:00
Grant Willcox
ffbd690a33
Add in ability to support detecting preview versions
2023-06-07 11:25:51 -05:00
cgranleese-r7
18ddd72285
Update jenkins login scanner to work with newer versions
2023-06-06 11:54:55 +01:00
Jeffrey Martin
4e91a4e93d
refactor archer_c7_traversal as gather module
...
* Update modules landed as a scanner into a more appropriate category.
* Adds a check method based on TP-link default `TITLE` html.
* Rename module consistent with existing exploit.
2023-06-05 09:07:11 -05:00
ErikWynter
ba3d6dc0f9
fix typo in print statement from original module
2023-06-05 16:21:00 +03:00
ErikWynter
12f59d54df
print the full version to the console
2023-06-05 15:49:06 +03:00
ErikWynter
c5ff96fdfe
grafana_plugin_traversal bugfix
2023-06-05 15:40:27 +03:00
Grant Willcox
f6dc2c007a
Fix up messages to more closely match check code messages and fix typos
2023-06-01 12:38:20 -05:00
Ryuuuuu
d535bb87ad
Fix up logic to handle check_host return codes
2023-06-01 12:17:59 -05:00
Christophe De La Fuente
8ed981e575
Land #18003 , Archer c7 traversal
2023-06-01 17:37:13 +02:00
Grant Willcox
6756047f1f
Land #18028 , Add Apache NiFi login scanner module
2023-05-31 12:25:18 -05:00
Grant Willcox
1fd2d41835
Fix typos and add dig for safe navigation
2023-05-31 10:34:10 -05:00
Christophe De La Fuente
ef89219715
Land #17899 , Dolibarr 16 unauthenticated contact database dump
2023-05-30 16:41:28 +02:00
h00die
93479be5e6
review comments
2023-05-26 15:47:22 -04:00
RadioLogic
573eb4bda4
Merge branch 'master' into archer_c7_traversal
2023-05-26 01:48:43 -04:00
h00die
48207dd9f1
apache nifi login module
2023-05-25 16:57:32 -04:00
h00die
7c2790513d
apache nifi version scanner
2023-05-24 20:05:34 -04:00
vtoutain
b327809450
Changes regarding auxiliary modules
...
Changed back some modifications of includes and functions definitions that were related to exploit modules.
2023-05-24 09:28:41 +02:00
RadioLogic
21273648a4
Fixed response using double quotes
2023-05-17 12:39:02 -04:00
RadioLogic
9a732a881b
Improve module description
...
Co-authored-by: bcoles <bcoles@gmail.com >
2023-05-17 08:09:25 -04:00
RadioLogic
789646dd65
Use better failwith lines
...
Co-authored-by: bcoles <bcoles@gmail.com >
2023-05-17 08:08:59 -04:00
vtoutain
e742df1c33
Rubocop warning fix
2023-05-10 16:18:33 +02:00
vtoutain
cfea6530a1
Merge branch 'rapid7:master' into dolibarr_16_contact_dump
2023-05-10 11:59:46 +02:00