bwatters
c44fb6a9d3
ugly but working no-gcc module
2022-02-08 16:00:19 -06:00
space-r7
bed067dda0
Land #16125 , add ARCH_CMD for GXV3140 support
2022-02-08 12:24:42 -06:00
Heyder Andrade
c7092861e0
Fix the CVE format based on failed tests
2022-02-08 14:38:54 +01:00
Heyder Andrade
f1fe6b7c89
Add module to CVE-2021-3129
2022-02-08 14:21:10 +01:00
talhak08
138856765f
changed datastore's variable names and edited the documentation.
2022-02-08 04:14:45 +03:00
talhak08
d2b0739d19
Rank's been deleted and fixed check method
2022-02-08 03:43:20 +03:00
talhak08
6955e2b4a2
Fixes
2022-02-08 03:29:49 +03:00
Talha Karakumru
274c48cf77
Microweber v1.2.10 Local File Inclusion (Authenticated)
2022-02-08 02:43:09 +03:00
Spencer McIntyre
2f3e4742f4
Land #16151 , Add QEMU Monitor HMP exec module
2022-02-07 16:43:08 -05:00
Brendan Coles
5bbe934db9
Add QEMU Monitor HMP 'migrate' Command Execution module
2022-02-07 17:48:27 +00:00
Christophe De La Fuente
fa849e51c3
Land #16137 , Update PrintNightmare to use the moved DCERPC definitions
2022-02-07 16:54:09 +01:00
Jake Baines
0fcc7e7733
Fixed spelling errors in descriptions
2022-02-06 02:55:17 -08:00
Jake Baines
2e0915fbd4
Fix the Claroty team name
2022-02-06 02:47:43 -08:00
Jake Baines
9758251278
Initial commit of CVE-2021-37343
2022-02-05 18:21:18 -08:00
Spencer McIntyre
dcb2f4be4c
Improve user list generation for ssh_enumusers
2022-02-04 16:08:30 -05:00
Spencer McIntyre
05b3c3535d
Apply rubocop fixes for ssh_enumusers
2022-02-04 15:57:51 -05:00
Spencer McIntyre
e2c91ebf30
Land #16010 , zabbix_script_exec improvements
...
This updates the zabbix_script_exec module to work with versions 5.0 and
newer as well as adds a new item-based execution technique.
2022-02-04 15:13:13 -05:00
Spencer McIntyre
ae278d0568
Cleanup some minor typos
2022-02-04 15:12:57 -05:00
Spencer McIntyre
bb94115e3a
Return nil instead of failing
2022-02-04 13:12:09 -05:00
Spencer McIntyre
dd64dcf074
Finish the PetitPotam module with docs
2022-02-04 13:12:08 -05:00
Spencer McIntyre
4cac9cae8d
Initial commit of authenticated petit potam
2022-02-04 13:12:08 -05:00
lap1nou
8838d9cb66
Added timeout system, fixed a bug with TLS_PSK, linted
2022-02-04 04:01:23 -08:00
Spencer McIntyre
965493191f
Add and use a Log4Shell mixin
2022-02-03 16:09:49 -05:00
h00die
11c67ce7d7
wp_modern_events_calendar_sqli
2022-02-02 19:21:42 -05:00
lap1nou
645ef5e71f
Fixed few bugs
2022-02-02 14:30:02 -08:00
lap1nou
7bf08a28ea
Modified default stager
2022-02-02 12:34:07 -08:00
Dhiraj Mishra
30b8e2196b
payload_file spaces
...
Thank you bcoles
Co-authored-by: bcoles <bcoles@gmail.com >
2022-02-02 21:30:13 +04:00
Spencer McIntyre
7c987a452d
Land #16130 , Wordpress RegistrationMagic sqli
2022-02-02 10:50:13 -05:00
Spencer McIntyre
dda6c53144
Fix table alignment
2022-02-02 10:48:58 -05:00
h00die
ed7dc1882b
updated failed login for registrationmagic
2022-02-01 17:32:34 -05:00
Spencer McIntyre
274b954c58
Land #16123 , fix reference URL in cisco_ucs_rce
2022-02-01 17:06:59 -05:00
Spencer McIntyre
06fb748402
Add the missing full disclosure URL reference
2022-02-01 17:06:37 -05:00
lap1nou
de32cc0e97
Linted with Rubocop, factorized API call, fixed some grammmar
2022-02-01 13:29:30 -08:00
space-r7
837fdf7c5e
Land #16128 , add cisco rv unauth rce
2022-02-01 10:34:57 -06:00
Spencer McIntyre
b146f098a2
Update to use the moved DCERPC definitions
2022-01-31 09:03:07 -05:00
usiegl00
8bf51dd1d8
Update smb_shadow and shadow_mitm_dispatcher
...
The dispatcher no longer uses an override flag, Instead the smb_shadow
module explicitly sets the attributes.
2022-01-31 14:49:18 +09:00
h00die
b71f9e7e45
wp_plugin RegistrationMagic sqli
2022-01-30 16:08:06 -05:00
Jake Baines
3371051f11
Switch to using the sqli library
2022-01-30 05:16:01 -08:00
Jake Baines
901adf510f
Fixed rubocop issue
2022-01-30 03:54:20 -08:00
Jake Baines
3f719474b2
Merge branch 'grandstream_CVE_2020_5724' of github.com:jbaines-r7/metasploit-framework into grandstream_CVE_2020_5724
2022-01-30 03:48:37 -08:00
Jake Baines
65c296818f
Addressed review items
2022-01-30 03:48:31 -08:00
Jake Baines
f9c113f63d
Addressed various review items
2022-01-30 03:42:15 -08:00
Jake Baines
ccedcfefab
Added exploit for CVE-2021-1472/CVE-2021-1473
2022-01-29 18:56:53 -08:00
Brendan Coles
feebf25ad4
Add support for GXV3140 models and ARCH_CMD busybox telnetd payload
2022-01-29 19:38:57 +00:00
Brendan Coles
a4fcddca8e
Rename to grandstream_gxv31xx_settimezone_unauth_cmd_exec
2022-01-29 19:24:09 +00:00
swapnil shinde
70d4013610
fix faulty URL ref #16078 removed faulty url
...
fix faulty URL ref #16078 , i searched for FULL_DISC tool in Cisco but i cant find anything related to this so i removed it. if that is meant by the issue.
2022-01-29 22:33:33 +05:30
Marek Šuppa
c1fefd0856
fix: Missing comma
...
* Fix missing comma in a list of useragents
2022-01-29 00:51:56 +01:00
adfoster-r7
c3647aa531
Land #16109 , Return early if no domains are found
2022-01-28 23:34:49 +00:00
Spencer McIntyre
d46822184f
Updates for Log4Shell
2022-01-28 14:56:44 -05:00
Brendan Coles
b7b7cdd2d9
Nops: Add cmd/generic
2022-01-28 15:29:56 +00:00