gwillcox-r7
|
593945ee61
|
Update module documentation with more detail r.e affected versions and the fact that the use of UNC paths could cause an issue if they are not typed in correctly. Also update the module documentation to use the output from recent tests to reflect recent changes. Shortern the module description and update its stability rating. Finally add in a reliability rating for the exploit module.
|
2020-09-10 11:32:45 -05:00 |
|
gwillcox-r7
|
7e1560ff26
|
Update documentation with the installation instructions I mentioned in the GitHub comments. Also RuboCop the exploit module code.
|
2020-09-10 11:32:18 -05:00 |
|
gwillcox-r7
|
d0fe87fbf6
|
Update documentation with some updated info about potentially bad situations the module could run into, and also include some new documentation on the new option we have added in to try to prevent this from happening
|
2020-09-10 11:32:18 -05:00 |
|
ide0x90
|
c4d463e921
|
Added option to generate standalone DLL.
|
2020-09-10 11:32:18 -05:00 |
|
ide0x90
|
53f3b70b33
|
Changed DLL so that it doesn't block the DNS service from stopping after the module executes.
Added OS check (>= Server 2003 is vulnerable so far).
Now cleans up dropped DLL and modified registry value.
|
2020-09-10 11:32:18 -05:00 |
|
ide0x90
|
7701ea1bc8
|
Compile DLL so that the DNS service doesn't crash when the module is run.
|
2020-09-10 11:32:18 -05:00 |
|
ide0x90
|
151fdb7ea5
|
Reduced exploit ranking and added check to see if session is elevated.
|
2020-09-10 11:32:18 -05:00 |
|
ide0x90
|
d1e9039af4
|
Initial module and documentation for Microsoft Windows DNS ServerLevelPluginDll abuse
|
2020-09-10 11:31:51 -05:00 |
|
bwatters
|
e592736833
|
Land #13992, Add module for CVE-2020-9839, LPE for macOS <= 10.15.4
Merge branch 'land-13992' into upstream-master
|
2020-09-04 15:53:17 -05:00 |
|
Tim W
|
7b1f5c1728
|
add documentation
|
2020-09-04 17:42:30 +08:00 |
|
Shelby Pace
|
6e2a7001a9
|
Land #13994, add Dlink Wifi manager rce
|
2020-08-18 09:34:19 -05:00 |
|
Niboucha Redouane
|
aec83d54cd
|
fix case of first character of sentence
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2020-08-17 21:06:18 +02:00 |
|
Niboucha Redouane
|
5487552afd
|
Fix some ponctuation, and character case
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2020-08-17 21:05:58 +02:00 |
|
Niboucha Redouane
|
df3107a99f
|
fix typo: privileged instead of privilegied
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2020-08-17 21:05:16 +02:00 |
|
gwillcox-r7
|
27ae6c4edd
|
Land #13986, Add CVE-2020-16205 exploit for Geutebruck G-CAM
|
2020-08-17 09:24:32 -05:00 |
|
gwillcox-r7
|
8f80d9b8b6
|
Minor updates to the documentation to reflect the fact that the username and password could be something other than root/admin
|
2020-08-17 09:12:02 -05:00 |
|
Spencer McIntyre
|
ea1f3d60f1
|
Adjust XML whitespace and add commands to the setup docs
|
2020-08-17 10:03:44 -04:00 |
|
William Vu
|
eda222434f
|
Execute commands in a shell
|
2020-08-14 21:46:34 -05:00 |
|
William Vu
|
d3febe3284
|
Set SSL as a DefaultOption and update RPORT
|
2020-08-14 21:46:34 -05:00 |
|
William Vu
|
46b6368597
|
Add Apache OFBiz XML-RPC Java deserialization
|
2020-08-14 21:46:34 -05:00 |
|
ddouhine
|
5e7c821d6d
|
Update geutebruck_testaction_exec.md
|
2020-08-14 23:15:12 +02:00 |
|
h00die
|
cd41d9c3c9
|
Land #13911, iphone 4 on ios 7.1.2 safari jit for root
|
2020-08-14 16:01:14 -04:00 |
|
William Vu
|
a6f7c0c0de
|
Backport miscellaneous fixes to my modules
|
2020-08-14 13:40:23 -05:00 |
|
h00die
|
82c25ebd88
|
add docs to safari jit
|
2020-08-14 14:14:08 +07:00 |
|
gwillcox-r7
|
dc21773f10
|
Apply updates to make the English a bit neater r.e affected versions. Also applied updates to make the markdown have bullet points so it displays better. Finally modified up the module description to explain the actual issue a bit more, but it might still need work
|
2020-08-13 15:13:55 -05:00 |
|
ddouhine
|
42a2a77a7e
|
Update geutebruck_testaction_exec.md
or now... (forgot the msftidy_docs just before)
|
2020-08-13 14:29:29 -05:00 |
|
ddouhine
|
e4f760691e
|
Update geutebruck_testaction_exec.md
it should be better now :)
|
2020-08-13 14:29:29 -05:00 |
|
ddouhine
|
a14a2fe8d2
|
Add documentation for Geutebruck G-CAM exploit
|
2020-08-13 14:29:28 -05:00 |
|
Niboucha Redouane
|
3df276230a
|
write whole FTP link, looks like some browsers dropped FTP support, and markdown does not render it as a link
|
2020-08-13 15:19:33 +02:00 |
|
Niboucha Redouane
|
66d3b1cd59
|
Add exploit for CVE-2019-13372
|
2020-08-13 15:07:11 +02:00 |
|
Spencer McIntyre
|
24b1235cf7
|
Whitespace adjustment and remove superfluous return statements
|
2020-08-12 13:59:25 -04:00 |
|
Zenofex
|
0dab52ef35
|
A few last changes from msftidy and msftidy_docs.
|
2020-08-09 18:25:13 -05:00 |
|
Zenofex
|
661e2a680b
|
Initial push of exploit and module for vbulletin_widget_template_rce vulnerability.
|
2020-08-09 17:38:52 -05:00 |
|
gwillcox-r7
|
a8e77217b5
|
Land #13945, Updates for PsExec documentation
|
2020-08-06 12:34:16 -05:00 |
|
gwillcox-r7
|
7797a52bd2
|
Ninja edit for msftidy_docs.rb compliance purposes
|
2020-08-06 12:33:22 -05:00 |
|
gwillcox-r7
|
d2b1d97b62
|
Land #13940, Compliance and Typo Edits for baldr_upload_exec
|
2020-08-06 11:25:31 -05:00 |
|
gwillcox-r7
|
2ca508c08e
|
Further edits for RuboCop and msftidy_docs.rb compliance
|
2020-08-06 11:18:39 -05:00 |
|
gwillcox-r7
|
5c6530d9e5
|
Update module description and documentation to have a better description of what is going on and to also fix further copies of the typos that were pointed out.
|
2020-08-06 10:50:47 -05:00 |
|
Spencer McIntyre
|
06702abec0
|
Update the documentaiton for PsExec
|
2020-08-06 11:36:22 -04:00 |
|
Jeffrey Martin
|
35017886b8
|
Land #13935, Preliminary Version 6
|
2020-08-06 10:19:34 -05:00 |
|
gwillcox-r7
|
94d7d766c8
|
Land #13191, Add addtional sqlmap and jtr files to check_external_scripts.rb
|
2020-08-05 12:51:21 -05:00 |
|
bwatters
|
fade2c76b5
|
Land #13904, Added Module: priviledged docker container escape
Merge branch 'land-13904' into upstream-master
|
2020-08-04 14:39:17 -05:00 |
|
h00die
|
9663d3378f
|
add sqlmap decloak
|
2020-08-04 08:48:30 -04:00 |
|
gwillcox-r7
|
6ed05df308
|
Land #13517, Documalis Free PDF Editor and Free PDF Scanner JPEG PDF Stack Buffer Overflow
|
2020-08-03 14:11:50 -05:00 |
|
Jeffrey Martin
|
9aa26d1208
|
Merge upstream into 6.x
|
2020-08-03 11:43:47 -05:00 |
|
gwillcox-r7
|
2d5fa912c3
|
Apply fixes to documentation to fix some errors and make it msftidy_docs.rb compliant. Also apply RuboCop updates to the module
|
2020-07-31 17:36:51 -05:00 |
|
Spencer McIntyre
|
a32d4c2a20
|
Land #13875, CVE-2020-8010 & CVE-2020-8012
|
2020-07-31 09:08:36 -04:00 |
|
Spencer McIntyre
|
2fb89f47c2
|
Apply suggestions from msftidy_docs for nimcontroller_bof
|
2020-07-31 09:08:13 -04:00 |
|
gwillcox-r7
|
2ef43ab7d0
|
Land #13920, CVE-2020-1147 SharePoint Deserialization RCE
|
2020-07-29 16:10:32 -05:00 |
|
Spencer McIntyre
|
4fa657d6eb
|
Fix a bunch of documentation typos and minor code cleanups
|
2020-07-29 16:30:44 -04:00 |
|