Spencer McIntyre
|
441b671edd
|
Update to include return values
|
2025-01-29 16:34:25 -05:00 |
|
Ashley Donaldson
|
40f2eaaab1
|
Recognise broken SMB sessions and close them
|
2024-12-16 19:52:19 +11:00 |
|
Spencer McIntyre
|
f36d786736
|
Merge pull request #19696 from smashery/add_user_module
Add user module
|
2024-12-10 11:26:49 -05:00 |
|
Spencer McIntyre
|
8b93f1a087
|
Merge branch 'master' into smb_change_pw
|
2024-12-09 09:37:45 -05:00 |
|
Ashley Donaldson
|
6eea156899
|
Added moved_from metadata
|
2024-12-09 08:49:04 +11:00 |
|
Spencer McIntyre
|
909476ee64
|
Merge pull request #19671 from smashery/ldap_change_pw
LDAP Change Password module
|
2024-12-06 17:13:50 -05:00 |
|
Spencer McIntyre
|
a708f8c7f3
|
Fix a trivial typo
|
2024-12-06 16:47:25 -05:00 |
|
Ashley Donaldson
|
75a334ca0a
|
Changes from code review
|
2024-12-06 16:05:53 +11:00 |
|
Ashley Donaldson
|
5032695d1f
|
MSFTidy fixes
|
2024-12-06 14:36:05 +11:00 |
|
Ashley Donaldson
|
7c46d4d02d
|
Updated text to be clearer about the AES kerberos behaviour
|
2024-12-06 14:28:44 +11:00 |
|
Ashley Donaldson
|
88bd8f6f9e
|
Support SMBPass as NTLM format
|
2024-12-06 14:21:56 +11:00 |
|
Ashley Donaldson
|
b5fbc9a8ae
|
MSFTidy fixes
|
2024-12-02 12:35:00 +11:00 |
|
jheysel-r7
|
c4b7954f15
|
Land #19596, Wordpress Plugin Post SMTP Account Takeover
|
2024-11-29 09:05:03 -08:00 |
|
h00die
|
1906646e67
|
peer review
|
2024-11-28 13:18:47 -05:00 |
|
Ashley Donaldson
|
ae61d0a9d6
|
MSFTidy changes
|
2024-11-22 13:39:07 +11:00 |
|
Ashley Donaldson
|
469671e59d
|
Added LDAP password change module
|
2024-11-21 17:34:21 +11:00 |
|
Ashley Donaldson
|
1a20bed286
|
Option description fix
|
2024-11-21 07:48:53 +11:00 |
|
Ashley Donaldson
|
4766976463
|
Removed executable status
|
2024-11-20 17:06:53 +11:00 |
|
Ashley Donaldson
|
cec793f8f5
|
Msftidy changes
|
2024-11-20 16:09:21 +11:00 |
|
Ashley Donaldson
|
1ca32eea7e
|
Implement Reset NTLM behaviour.
|
2024-11-20 15:00:56 +11:00 |
|
Ashley Donaldson
|
8158cf5bae
|
Add Reset and Change_NTLM actions
|
2024-11-20 12:13:41 +11:00 |
|
Ashley Donaldson
|
479078a5f2
|
Adding changing/resetting password module
|
2024-11-19 17:44:59 +11:00 |
|
Christophe De La Fuente
|
2970c99471
|
Use binread instead
|
2024-11-18 15:32:08 +01:00 |
|
Christophe De La Fuente
|
7c512b7054
|
Read the certificate in binary mode
|
2024-11-18 15:11:36 +01:00 |
|
Ashley Donaldson
|
d396d06e35
|
Enable adding Users, not just computers (if permissions allow)
Also added extra error handling for when password is wrong or expired
|
2024-11-12 12:33:29 +11:00 |
|
h00die
|
2b593bcf54
|
wp_post_smtp_acct_takeover peer review
|
2024-11-03 13:52:55 -05:00 |
|
h00die
|
9da5177d11
|
remove old code
|
2024-10-29 16:44:48 -04:00 |
|
h00die
|
41ed44864f
|
wp_post_smtp_acct_takeover
|
2024-10-29 16:44:20 -04:00 |
|
h00die
|
4feb12ab4a
|
untested code
|
2024-10-29 16:44:20 -04:00 |
|
Christophe De La Fuente
|
ae213813b5
|
Updates from code review
|
2024-10-22 14:41:02 +02:00 |
|
Spencer McIntyre
|
8e38010d6e
|
Add an ESC15 template
|
2024-10-17 11:23:31 -04:00 |
|
jheysel-r7
|
05ff8359b8
|
Merge pull request #19436 from h4x-x0r/CVE-2024-6670
WhatsUp Gold SQL Injection (CVE-2024-6670) Module
|
2024-09-26 17:04:30 -04:00 |
|
h4x-x0r
|
c20b1d8a03
|
minor fixes
minor fixes
|
2024-09-26 04:01:36 +01:00 |
|
jheysel-r7
|
d11c2be4ea
|
Merge pull request #19375 from h4x-x0r/CVE-2024-20419
Cisco Smart Software Manager (SSM) On-Prem Account Takeover (CVE-2024-20419) Module
|
2024-09-24 12:19:54 -04:00 |
|
Jack Heysel
|
f254eeb65e
|
Added error handling
|
2024-09-23 14:16:26 -07:00 |
|
h4x-x0r
|
322188a112
|
Refactoring
Refactored code to remove duplicate requests
|
2024-09-23 13:29:46 +01:00 |
|
h4x-x0r
|
05f591d005
|
Cleanup and check method added
Cleanup and check method added
|
2024-09-12 15:43:20 +01:00 |
|
h4x-x0r
|
75627ccba7
|
Update whatsup_gold_sqli.rb
|
2024-09-02 15:45:45 +01:00 |
|
h4x-x0r
|
fdd740b235
|
cleanup
cleanup
|
2024-09-02 15:44:27 +01:00 |
|
h4x-x0r
|
64f595c431
|
cleanup, version check, documentation
cleanup, version check, documentation
|
2024-09-02 15:41:08 +01:00 |
|
h4x-x0r
|
686da13ff5
|
WhatsUp Gold SQL Injection (CVE-2024-6670)
WhatsUp Gold SQL Injection (CVE-2024-6670)
|
2024-09-02 16:09:10 +01:00 |
|
bwatters
|
4af2294709
|
Land #19386, Ivanti Virtual Traffic Manager (vTM) Authentication Bypass (CVE-2024-7593) Module
Merge branch 'land-19386' into upstream-master
|
2024-08-27 09:39:10 -05:00 |
|
bwatters
|
84431b0a4e
|
Land #19380, Control iD iDSecure Authentication Bypass (CVE-2023-6329) Module
Merge branch 'land-19380' into upstream-master
|
2024-08-26 18:09:09 -05:00 |
|
h4x-x0r
|
3f3690bebb
|
code cleanup
code cleanup
|
2024-08-19 21:17:16 +01:00 |
|
h4x-x0r
|
9690f01df6
|
code cleanup
code cleanup
|
2024-08-19 16:25:50 +01:00 |
|
h4x-x0r
|
82f51bb9b7
|
code cleanup
code cleanup
|
2024-08-16 15:43:34 +01:00 |
|
h4x-x0r
|
5a94869809
|
cleanup
cleanup
|
2024-08-16 14:12:41 +01:00 |
|
h4x-x0r
|
3577ae8ffb
|
Code cleanup
Code cleanup
|
2024-08-16 13:57:38 +01:00 |
|
h4x-x0r
|
8ad328a510
|
Code cleanup
Code cleanup
|
2024-08-16 07:07:16 +01:00 |
|
h4x-x0r
|
947cefe43a
|
Fixed get_cookies
Fixed get_cookies
|
2024-08-14 17:42:11 +01:00 |
|