Commit Graph

11360 Commits

Author SHA1 Message Date
SunCSR Team 3dcd963c9a Update wp_duplicator_file_read.rb 2020-12-13 21:05:34 -05:00
SunCSR Team 64f597a43a Update wp_duplicator_file_read.rb 2020-12-12 23:44:50 +07:00
SunCSR Team 5fc8bb1d7b Update wp_duplicator_file_read.rb 2020-12-12 21:39:59 +07:00
SunCSR Team 8ede2be299 Add module wp_duplicator_file_read.rb
Duplicator 1.3.24 & 1.3.26 - Unauthenticated Arbitrary File Download
2020-12-10 23:40:32 -05:00
SunCSR Team 4b3a5fa2c8 Delete wp_duplicator_file_read.rb 2020-12-10 23:39:38 -05:00
SunCSR Team ee541a31ae Add files via upload
Duplicator 1.3.24 & 1.3.26 - Unauthenticated Arbitrary File Download
2020-12-10 23:37:32 -05:00
William Vu 9452c1dcfa Fix merge conflict from #14202, in linear history 2020-12-09 17:24:29 -06:00
Spencer McIntyre 59339f3337 Land #14418, Wordpress plugin Email Subscribers & Newsletters sqli (CVE-2019-20361) 2020-12-09 10:29:32 -05:00
Spencer McIntyre 90a99ae7c3 Land #14423, Expand wordpress_scanner to look for themes & plugins 2020-12-09 09:12:28 -05:00
h00die 13967a40d2 updates to easy wp smtp module 2020-12-08 20:51:54 -05:00
h00die 3b9183f198 working 2020-12-08 16:49:45 -05:00
h00die 4d36a107e6 reverse logic 2020-12-07 18:47:45 -05:00
dwelch-r7 49a6b1b257 Remove requires that sneaked in while the PR was up 2020-12-07 11:02:10 +00:00
dwelch-r7 1617b3ec9b Use zeitwerk for lib/msf/core folder 2020-12-07 10:31:45 +00:00
William Vu e5941cc4a8 Refactor aux/scanner/ssh/ssh_version for CheckCode 2020-12-07 01:35:13 -06:00
h00die b21fccebaa updates from review 2020-12-04 21:50:31 -05:00
Alan Foster 76e967353e Add auxiliary support to autocheck mixin 2020-12-03 01:09:06 +00:00
dwelch-r7 3824f3923f Land #14394, Apache Tomcat - AJP 'Ghostcat' File Read/Inclusion
Apache Tomcat - AJP 'Ghostcat' File Read/Inclusion
2020-11-30 05:15:29 +00:00
SunCSR Team 3fbe851d71 Update tomcat_ghostcat.rb 2020-11-30 08:33:32 +07:00
SunCSR Team 4dce7c070b Update tomcat_ghostcat.rb 2020-11-26 16:24:49 +07:00
Natto 8f35e3c627 Create shodan_host.rb 2020-11-25 12:57:48 +08:00
h00die 0832fe17f0 use fail_with 2020-11-22 09:02:54 -05:00
h00die 7138f6e48b cleanup 2020-11-22 07:51:03 -05:00
h00die 98d00f47f3 tidy 2020-11-22 07:48:54 -05:00
h00die f4c67d713b adjust version number 2020-11-21 10:39:03 -05:00
h00die b023adfdcd wordpress email and subscription newsletter sqli 2020-11-21 10:31:55 -05:00
h00die 149e30d81a wordpress email and subscription newsletter sqli 2020-11-21 10:30:15 -05:00
adfoster-r7 2eb2fad212 Land #14294, Allow adding details to CheckCodes, and update ms17_010_eternalblue to validate the target is x64 2020-11-19 14:09:55 +00:00
SunCSR Team a87bc32a5c Update tomcat_ghostcat.rb 2020-11-19 14:06:05 +07:00
SunCSR Team 803f3c7bf7 Update tomcat_ghostcat.rb 2020-11-19 09:27:05 +07:00
SunCSR Team 441c61190b Update tomcat_ghostcat.rb 2020-11-17 00:00:32 +07:00
SunCSR Team 41aae4224f Update tomcat_ghostcat.rb 2020-11-16 22:25:41 +07:00
SunCSR Team 7d860bb623 Rename modules/exploits/windows/http/tomcat_ghostcat.rb to modules/auxiliary/admin/http/tomcat_ghostcat.rb 2020-11-16 20:57:13 +07:00
h00die 98b222fa48 fix permissions 2020-11-11 13:42:41 -05:00
h00die 35d6a9f315 add example python module to repo 2020-11-11 10:11:08 -05:00
Spencer McIntyre cbc34d7cbc Tweak the logic for detecting if john is the jumbo version 2020-11-11 09:25:52 -05:00
h00die 4f37e65069 update apply_pot to the hashcat generation 2020-11-11 09:38:02 -05:00
Niboucha Redouane e23caaf5eb fix parameter names, small formatting issue 2020-11-10 19:07:32 +01:00
adfoster-r7 a169e01aff Land #14371, Add version details to drupal_views_user_enum.rb 2020-11-10 12:55:03 +00:00
h00die 8b9043c3f3 add drupal views version info 2020-11-09 16:03:23 -05:00
adfoster-r7 a0106aa603 Land #14269, Add Apache Zookeeper Information Disclosure Auxiliary Module 2020-11-09 20:12:35 +00:00
Christophe De La Fuente 55ccc42cde Land #14319, wp_Loginizer unauth sqli (CVE-2020-27615) 2020-11-05 15:36:10 +01:00
cgranleese-r7 70985a09e2 Merge pull request #14280 from h00die/mikrofileread
Land #14280, Mikrotik unauthenticated directory traversal file read
2020-11-05 09:27:47 +00:00
Karn Ganeshen f9a12e6e80 Module updated
Improved handling of response exceptions
2020-11-05 04:03:05 +05:30
h00die 37b454ce1e chmod +x 2020-11-04 14:18:34 -05:00
h00die dff6a21742 add wp version check 2020-11-04 11:45:06 -05:00
Grant Willcox 8a82907a0f Land #14323, Use the datastore nameservers when the NS option is set in enum_dns.rb for zone transfers 2020-11-02 16:44:19 -06:00
Spencer McIntyre 708de57499 Land #14297, Modified zabbix login to work with newer versions of zabbix 2020-11-02 15:59:22 -05:00
Spencer McIntyre a1561cff46 Add some additional error handling with more readable messages 2020-10-30 14:34:44 -04:00
Alan Foster 17ac8dab2a Fix smb version error handling 2020-10-30 16:26:31 +00:00