bcoles
|
16d5af62d5
|
killav: Cleanup and support non-meterpreter sessions
|
2022-08-14 05:16:57 +10:00 |
|
Jack Heysel
|
aac8ecbfe6
|
Land #16885, move msflag.ps1 to /data/post/...
This PR effectively runs the following command
mv scripts/ps/msflag.ps1 data/post/powershell/msflag.ps1
|
2022-08-12 14:33:20 -04:00 |
|
space-r7
|
dc4d3ff21b
|
Land #16881, fix crash in forward_pageant module
|
2022-08-11 17:40:33 -05:00 |
|
Redouane NIBOUCHA
|
b0d5a6bec4
|
Rubocop fix
|
2022-08-11 13:22:51 +02:00 |
|
Redouane NIBOUCHA
|
e612f02ecb
|
Add MAX_TRIES option, address the feedback of bwatters-r7
|
2022-08-11 13:21:14 +02:00 |
|
space-r7
|
a68986599d
|
Land #16841, add enum_powershell_env cleanup
|
2022-08-10 14:00:59 -05:00 |
|
Jack Heysel
|
c54658b035
|
Land #16878, Clean up enum_logged_on_users
Adds support for non-Meterpreter sessions, fixes
rubo-cop and msftidy_docs violations
|
2022-08-10 14:17:50 -04:00 |
|
space-r7
|
7f02daac5b
|
change default password
|
2022-08-09 16:12:54 -05:00 |
|
Jack Heysel
|
06f0fffc20
|
Land #16856, Webmin package updates RCE module
This module exploits an arbitrary command injection
in Webmin versions prior to 1.997.
|
2022-08-09 16:13:19 -04:00 |
|
Jack Heysel
|
0be211025e
|
Land #16873, Cleanup and support non-meterpreter
This PR cleans up and adds support for non-meterpreter
sessions as well as adds documentation and error-handling
|
2022-08-09 15:34:21 -04:00 |
|
Spencer McIntyre
|
0e148d6ba4
|
Update and rename the module
|
2022-08-09 13:32:09 -04:00 |
|
bwatters
|
a8e73d9fa9
|
Land #16807, New module for 0-day Zimbra privilege escalation
Merge branch 'land-16807' into upstream-master
|
2022-08-09 11:18:21 -05:00 |
|
Christophe De La Fuente
|
38b845f247
|
Fix from code review
- Documentation typos
- Adding ARM64 support
|
2022-08-09 15:09:25 +02:00 |
|
Spencer McIntyre
|
2290b04995
|
Update the exploit with the new gadget chain
|
2022-08-08 17:52:53 -04:00 |
|
bcoles
|
4d4f7b8c55
|
mv scripts/ps/msflag.ps1 data/post/powershell/msflag.ps1
|
2022-08-08 18:00:36 +10:00 |
|
bcoles
|
0ac1a9d704
|
forward_pageant: Cleanup and fix default UNIX socket path
|
2022-08-08 12:56:52 +10:00 |
|
bcoles
|
b2683981dc
|
enum_logged_on_users: Cleanup
|
2022-08-08 01:50:36 +10:00 |
|
bcoles
|
6380c69775
|
enum_artifacts: Cleanup and support non-meterpreter sessions
|
2022-08-07 16:01:45 +10:00 |
|
h00die
|
c51930dd66
|
remove erikwynter modules for time being
|
2022-08-06 14:11:37 -04:00 |
|
npm-cesium137-io
|
ed3a0959ae
|
vcenter post lib and spec
|
2022-08-06 14:01:56 -04:00 |
|
Jeffrey Martin
|
c45262cd46
|
Land #16800, Add support for OpenSSL 3
|
2022-08-05 14:20:51 -05:00 |
|
Ron Bowes
|
5d7fb283b7
|
Capture the command output
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
6564ea9719
|
Change Vulnerable to Appears
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
2cde5f6364
|
Typo / compile error
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
caff6a53f5
|
Add a CVE and better description
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
ea581482d4
|
Remove the commented-out CVE, it's making lint sad
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
6e8d04ddc9
|
Add a note that IOCs show up in logs
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
cc27f563ec
|
Small cleanup
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
5e1888ee46
|
Cleanups
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
0fd61e859d
|
Make lint happy
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
bba4a23f65
|
Add zimbra_slapper_priv_esc module (privilege escalation in Zimbra, currently 0-day)
|
2022-08-05 13:55:05 -05:00 |
|
bwatters
|
74eff9ffac
|
Land #16851, Add Cassandra Web file read auxiliary module
Merge branch 'land-16851' into upstream-master
|
2022-08-05 13:04:07 -05:00 |
|
space-r7
|
0334beada2
|
Land #16758, add ManageEngine ADAudit Plus exploit
|
2022-08-05 12:19:42 -05:00 |
|
space-r7
|
4202502992
|
make some prints vprints, add steps
|
2022-08-05 11:34:46 -05:00 |
|
Ron Bowes
|
7c21c57564
|
Merge branch 'master' into manageengine-adauditplus-cve-2022-28219
|
2022-08-04 14:07:50 -07:00 |
|
Ron Bowes
|
713e476139
|
Remove 'puts' again
|
2022-08-04 12:59:11 -07:00 |
|
Ron Bowes
|
7844b8f5f8
|
Encode usernames containing spaces into 8.3
|
2022-08-04 12:55:08 -07:00 |
|
Ron Bowes
|
530174c940
|
Remove an errant puts
|
2022-08-04 12:42:14 -07:00 |
|
Ron Bowes
|
969c81e41c
|
Improve the FTP reverse connection in two ways - 1-add a terminator so we know when it's done, and 2-don't fail the whole thing if we fail on one name
|
2022-08-04 11:13:46 -07:00 |
|
Christophe De La Fuente
|
9c6a198453
|
Land #16796, Path traversal vulnerability in RARLAB UnRAR < 6.12 with Zimbra RCE module
|
2022-08-04 19:44:57 +02:00 |
|
Jack Heysel
|
4cedbadbf9
|
Land #16820, fix default action err in ldap_query
If the user does not set a default action the ldap_query
module will now select a default action instead of erroring
|
2022-08-04 12:17:22 -04:00 |
|
Spencer McIntyre
|
c244399f1f
|
Land #16857, Add auxiliary gather module for Cisco PVC2300 camera information disclosure
|
2022-08-04 11:46:07 -04:00 |
|
Spencer McIntyre
|
f87482351c
|
Add missing return statements in the check method
|
2022-08-04 11:45:36 -04:00 |
|
Ron Bowes
|
d8faa4dd37
|
Fix a blank line that I thought I'd fixed
|
2022-08-04 08:24:32 -07:00 |
|
Ron Bowes
|
26eee72512
|
Only print_status once, so it doesn't make a mess in the background
|
2022-08-04 08:02:28 -07:00 |
|
ErikWynter
|
0bb14d084f
|
add extra check, fix typo
|
2022-08-04 17:27:04 +03:00 |
|
ErikWynter
|
af712d4a89
|
add docs, fix typo in module description
|
2022-08-04 16:58:39 +03:00 |
|
Ron Bowes
|
2ec25fc3e5
|
Add a timeout to the reverse FTP connection
|
2022-08-03 15:17:02 -07:00 |
|
Ron Bowes
|
a314423e81
|
Some changes requested by @cdelafuente-r7
|
2022-08-03 14:51:51 -07:00 |
|
bwatters
|
163d4d5b11
|
Land #16854, Add CVE-2022-31660 VMware Workspace ONE Access LPE
Merge branch 'land-16854' into upstream-master
|
2022-08-03 16:50:12 -05:00 |
|