ErikWynter
|
b8856bbb87
|
fix capitalization of Htlm_fileName JSON parram
|
2023-05-05 09:59:11 +03:00 |
|
space-r7
|
9fa0dac56c
|
add login and path change methods
|
2023-05-04 18:03:02 -05:00 |
|
ErikWynter
|
c088430bd9
|
improve sanity checks in login method and other code review fixes
|
2023-05-04 15:12:31 -05:00 |
|
Grant Willcox
|
f27fc28411
|
Perform review updates
|
2023-05-04 15:12:31 -05:00 |
|
ErikWynter
|
9b596b3efd
|
minor changes
|
2023-05-04 15:12:31 -05:00 |
|
ErikWynter
|
1c6c1dffc6
|
final code review fixes
|
2023-05-04 15:12:31 -05:00 |
|
ErikWynter
|
9fe7db4648
|
improve status codes handling
|
2023-05-04 15:12:30 -05:00 |
|
ErikWynter
|
86b7f97421
|
remove trailing whitespace
|
2023-05-04 15:12:30 -05:00 |
|
ErikWynter
|
aede036b02
|
additional changes from code review
|
2023-05-04 15:12:30 -05:00 |
|
Grant Willcox
|
8871b2955b
|
Fix up Active Directory name so we appropriately use uppercase
|
2023-05-04 15:12:30 -05:00 |
|
Grant Willcox
|
ba687c49aa
|
Fix a few typos
|
2023-05-04 15:12:29 -05:00 |
|
ErikWynter
|
a5e86a0c51
|
code review improvements, including renaming silent param
|
2023-05-04 15:12:29 -05:00 |
|
Grant Willcox
|
0fd743d851
|
Add in fixes from code review
|
2023-05-04 15:12:29 -05:00 |
|
ErikWynter
|
dd075d5c99
|
library improvements after code review, module update
|
2023-05-04 15:12:28 -05:00 |
|
ErikWynter
|
47d374497a
|
create adaudit plus mixin and move some stuff there
|
2023-05-04 15:12:27 -05:00 |
|
Grant Willcox
|
3b0d8b850b
|
Fix up some issues identified during review
|
2023-05-04 15:12:26 -05:00 |
|
ErikWynter
|
9f68a5f8d1
|
add manageengine_adaudit_plus_authenticated_rce exploit module and docs
|
2023-05-04 15:12:09 -05:00 |
|
Grant Willcox
|
e5c636f931
|
Move folder descriptions into README.md files
|
2023-05-03 14:06:13 -05:00 |
|
Grant Willcox
|
bf61718fe6
|
Land #17915, Icinga Web 2 Arbitrary File Read (CVE-2022-24716)
|
2023-05-03 11:47:26 -05:00 |
|
h00die
|
0c0ae00149
|
add cve to nfsmount
|
2023-05-02 19:58:47 -04:00 |
|
h00die
|
95562e04aa
|
sudoedit work
|
2023-05-02 18:39:59 -04:00 |
|
Grant Willcox
|
092e4f93ad
|
Fix up incorrect user who we are executing as
|
2023-05-02 15:50:46 -05:00 |
|
Grant Willcox
|
cf6b309904
|
Add in quick fixes from review
|
2023-05-02 15:17:02 -05:00 |
|
adfoster-r7
|
7ec7a4c607
|
Land #17910, Fixes couchdb_login false positives
|
2023-05-02 17:56:55 +01:00 |
|
Spencer McIntyre
|
d3a903b8b3
|
Land #17945, Add missing payload tests
|
2023-04-28 15:13:50 -04:00 |
|
Christophe De La Fuente
|
60149259a2
|
Land #17856, RCE exploit for CVE-2023-26359 (Adobe ColdFusion) and an auxiliary module for arbitrary file read via the same vuln.
|
2023-04-28 19:27:15 +02:00 |
|
Christophe De La Fuente
|
f5b1b96d9a
|
Fix rubocop issues
|
2023-04-28 16:09:57 +02:00 |
|
Christophe De La Fuente
|
62806caeae
|
Update web_delivery
|
2023-04-28 16:09:51 +02:00 |
|
h00die-gr3y
|
cfb21e3de2
|
Added CVE-2023-28770 reference
|
2023-04-28 12:51:17 +00:00 |
|
bcoles
|
f6725dfc4e
|
feedback_assistant_root: Check if OSX version is blank in check method
|
2023-04-28 19:52:15 +10:00 |
|
catatonicprime
|
97a76e3883
|
linting changes. removing unnecessary success checks.
|
2023-04-28 00:07:47 +00:00 |
|
catatonicprime
|
4ba8d62d88
|
Removing unused documentation
|
2023-04-28 00:02:37 +00:00 |
|
catatonicprime
|
c0be991ed8
|
removing superfluous options
|
2023-04-28 00:00:57 +00:00 |
|
Jeffrey Martin
|
9f2105c06d
|
add sctp payload specs
Update sizes to match automation expectations
|
2023-04-27 16:42:46 -05:00 |
|
catatonicprime
|
12f7134cc6
|
generating payloads on the fly is what we wanted originally
|
2023-04-27 19:38:12 +00:00 |
|
adfoster-r7
|
4d98499766
|
Land #17941, Added CVE Identifier to SEC Consult Zyxel Exploit (CVE-2023-28769)
|
2023-04-27 17:46:38 +01:00 |
|
space-r7
|
63115c9415
|
Land #17857, add T3S support for weblogic modules
|
2023-04-27 11:37:37 -05:00 |
|
catatonicprime
|
16ae6b71f4
|
Use the generated payload as is.
|
2023-04-27 15:21:21 +00:00 |
|
catatonicprime
|
feec15a482
|
full_uri has what we need for the origin header
|
2023-04-27 15:07:15 +00:00 |
|
Jacob Baines
|
ec5858c198
|
Added newly assigned CVE identifier
|
2023-04-27 09:54:48 -04:00 |
|
catatonicprime
|
0be38eb3ab
|
method should do one thing and do it well
|
2023-04-26 19:32:57 +00:00 |
|
catatonicprime
|
5e93669d75
|
Enable AutoCheck
|
2023-04-26 19:28:56 +00:00 |
|
catatonicprime
|
9f6fe964e2
|
bypass_auth returns the anti-csrf token and vprints active session on success
|
2023-04-26 18:28:02 +00:00 |
|
catatonicprime
|
8694beebd1
|
Removing unnecessary search.
|
2023-04-26 18:17:46 +00:00 |
|
catatonicprime
|
0cf5f4cacc
|
More accurate list of side effects.
|
2023-04-26 16:55:13 +00:00 |
|
catatonicprime
|
bcafd22997
|
Better defaults pattern for TARGETURI.
|
2023-04-26 16:54:19 +00:00 |
|
catatonicprime
|
8c87660eaa
|
Explicit stance.
|
2023-04-26 16:53:04 +00:00 |
|
catatonicprime
|
22238a0860
|
Adding references.
|
2023-04-26 16:52:26 +00:00 |
|
h00die
|
d454b2e195
|
cve-2023-22809
|
2023-04-25 20:54:48 -04:00 |
|
catatonicprime
|
8a9871f0d8
|
Default to a java payload.
|
2023-04-25 23:57:05 +00:00 |
|