Commit Graph

11360 Commits

Author SHA1 Message Date
Grant Willcox 57bb3fbc1c Land #14383, Add exploit and auxiliary Python module examples and update executable loader accordingly 2021-01-22 13:03:57 -06:00
adfoster-r7 ff6a1f135c Land #14629, migrate msf folder to Zeitwerk 2021-01-22 14:21:26 +00:00
Brendan Coles abb0decc7a wordpress_ghost_scanner: Update reference URLs 2021-01-21 20:51:29 +00:00
Brian Halbach b48c413bcc Redo Jira_User_enum Module to use AuthBrute mixin 2021-01-21 12:07:47 -06:00
Brian Halbach 9e8f4dc764 Update modules/auxiliary/scanner/http/jira_user_enum.rb
Co-authored-by: Jeffrey Martin <jeffrey_martin@rapid7.com>
2021-01-19 13:09:22 -06:00
Brian Halbach 4e6bcc567a Update modules/auxiliary/scanner/http/jira_user_enum.rb
Co-authored-by: Jeffrey Martin <jeffrey_martin@rapid7.com>
2021-01-19 13:09:10 -06:00
Brian Halbach ec2a35c3f2 Update jira_user_enum.rb 2021-01-19 11:08:11 -06:00
Spencer McIntyre 3ee642a589 Land #14597, gather/external_ip: set Host header 2021-01-19 09:19:48 -05:00
Brian Halbach d95e63c110 Add Jira User Enum Module 2021-01-18 10:13:16 -06:00
dwelch-r7 d437a32374 remove msf/util requires 2021-01-18 14:21:54 +00:00
adfoster-r7 da7a51fbca Land #14584, implement the zeitwerk autoloader within lib/msf/base 2021-01-18 13:11:08 +00:00
Paul Werther 10b29b8e87 add mssql_exec_oacreate module 2021-01-17 17:15:46 +01:00
Andrey Arapov 5ec5db828e gather/external_ip: set Host header
http://ifconfig.me replies with 404 when Host header isn't set.
2021-01-11 15:59:57 +01:00
k0pak4 bdc70869ee Update documentation to include passwords and clean up password work 2021-01-09 20:34:39 -05:00
k0pak4 0cb1e16c8b Convert to full login scanner 2021-01-09 12:10:06 -05:00
h00die bcbb1d4573 updated sql for more stealth 2021-01-09 09:10:20 -05:00
k0pak4 2d0571e037 Add valid usernames to the database as new credentials 2021-01-08 07:22:36 -05:00
Shelby Pace 7cab5568ab Land #14568, add total upkeep backup download 2021-01-05 14:01:04 -06:00
dwelch-r7 bad5ccbc49 Remove msf/base requires 2021-01-05 14:59:46 +00:00
h00die d34166ebe1 randomize 2021-01-03 17:36:54 -05:00
h00die 73b515707e abandoned cart sqli 2021-01-03 17:15:17 -05:00
h00die 41aff572c0 chopslider 2021-01-02 14:19:30 -05:00
h00die c64d0038ab review step 1 2020-12-31 12:54:33 -05:00
RAMELLA Sébastien 338e277303 fix. some rubocop recommendations 2020-12-31 14:42:06 +04:00
h00die ff3dd7b73a first go of wp_total_upkeep 2020-12-30 16:34:12 -05:00
Spencer McIntyre 8701a2e6e8 Remove the deprecated SOCKS modules in favor of the new unified one 2020-12-29 13:33:06 -05:00
k0pak4 f78a66e9f7 Pylint main module 2020-12-23 13:35:00 -05:00
k0pak4 9ac75e492e Add documentation and clean up 2020-12-23 11:59:47 -05:00
k0pak4 e351dc0d2c Make use of existing RHOSTS 2020-12-23 11:46:19 -05:00
k0pak4 2c03ed7854 Add username text file option 2020-12-23 11:23:52 -05:00
k0pak4 4488688d61 Add AD Domain Discovery to module 2020-12-23 10:49:02 -05:00
k0pak4 60c60d7b12 First working version of the module, single username enumeration 2020-12-23 00:51:11 -05:00
k0pak4 0c2411f064 First pass at RDP Web Client module that can enumerate usernames against a domain 2020-12-22 23:34:52 -05:00
Grant Willcox 2c66beac17 Land #14429, Create shodan_host.rb, a module to grab ports from a given IP using Shodan 2020-12-21 15:58:17 -06:00
Grant Willcox 12277d3020 Apply RuboCop changes to the exploit module and also make final adjustments to the exploit code to handle some edge cases and fix review comments 2020-12-21 15:26:48 -06:00
Spencer McIntyre 11faafa4e9 Land #14474, Wordpress 2-day: easy-wp-smtp arbitrary wordpress user password reset 2020-12-18 17:07:46 -05:00
Spencer McIntyre 764efbeac3 Fixup a typo, an unnecessary statement and clarify a statement 2020-12-18 17:07:16 -05:00
h00die 3cb39c2fca Land #14497, wordpress uplicator plugin arbitrary file read 2020-12-18 17:05:40 -05:00
h00die bee11c7d6e add cve 2020-12-18 15:32:35 -05:00
h00die 9e6d20a83c create aggressive mode and some review 2020-12-18 15:30:45 -05:00
RAMELLA Sébastien 0e07269c3f change parsing method 2020-12-18 11:31:52 +04:00
h00die a1702e8b53 rubocop and minor adjustments 2020-12-17 06:39:43 -05:00
RAMELLA Sébastien 7e99025dd3 fix. remove call to eval and some minor change 2020-12-16 19:36:32 +04:00
Natto e4678b82c5 Update shodan_host.rb 2020-12-16 19:39:43 +08:00
RAMELLA Sébastien 483282b05e fix. spelling typo 2020-12-16 09:01:33 +04:00
RAMELLA Sébastien e3178c48c4 add. fortios path traversal (cve-2018-13379) 2020-12-15 19:09:37 +04:00
Natto 45a9609fc8 Update shodan_host.rb 2020-12-14 17:47:50 +08:00
Natto 51fd4033e8 Update shodan_host.rb 2020-12-14 17:45:19 +08:00
Natto 8126ec4cb5 Update shodan_host.rb 2020-12-14 16:39:15 +08:00
SunCSR Team 65be04ebf9 Update wp_duplicator_file_read.rb 2020-12-13 21:07:21 -05:00