Tim W
65fcdcfd2f
Land #9884 , add linux ufo priv esc module
2018-08-02 02:56:27 -07:00
Wei Chen
580f4cf509
Land #10255 , Adding Micro Focus Secure Messaging Gateway RCE
2018-07-30 19:08:43 -07:00
Wei Chen
5fce9d8222
Land #10300 , Add root exploit for Axis network cameras
2018-07-25 12:47:50 -07:00
Tim W
691d8f2c41
Land #9753 , Linux BPF sign extension local privesc
2018-07-18 11:05:32 -07:00
Jacob Robles
d138ddba8d
Land #10295 , Add QNAP Q'Center change_passwd Command Execution exploit
2018-07-14 08:20:32 -07:00
William Vu
f6a7f19e2b
Land #10027 , Hadoop unauthed command execution
2018-07-12 20:00:57 -07:00
William Vu
f18fd4aca1
Land #9780 , CouchDB auth bypass and RCE
2018-07-12 11:24:05 -05:00
Brent Cook
3a92908e9b
Land #10108 , add IBM QRadar SIEM exploit
2018-07-12 11:24:02 -05:00
Shelby Pace
a4f0dc5ea2
Land #10133 , Add HID discoveryd RCE exploit
2018-07-06 12:35:38 -07:00
Brent Cook
b5981caa0b
Land #10219 , Add HP VAN SDN Controller exploit
2018-07-05 12:23:50 -07:00
Jacob Robles
fa95c0c2a1
Land #9958 , Nagios xi 2 electric
2018-06-29 10:18:13 -07:00
bwatters-r7
fff6d2ebb7
Lad #10017 , D-Link DSL-2750B Unauthenticated OS Command Injection
...
Merge branch 'land-10017' into upstream-master
2018-06-14 15:09:38 -05:00
bwatters-r7
0a19221af2
Land #10101 , Add glibc 'realpath()' Privilege Escalation exploit
2018-06-12 14:43:57 -07:00
Tim W
016ee4d460
Land #9987 , AF_PACKET chocobo_root exploit
2018-05-21 15:22:51 -07:00
bwatters-r7
81368bef7a
Land #9966 , Add Reliable Datagram Sockets (RDS) Privilege Escalation exploit
...
Merge branch 'land-9966' into upstream-master
2018-05-21 17:01:36 -05:00
Tim W
bacab0507b
Land #9947 , AF_PACKET packet_set_ring exploit
2018-05-17 08:16:34 -07:00
William Vu
bbb5ff8ad4
Land #7815 , CVE-2016-9299 exploit
2018-05-17 08:16:33 -07:00
Tim W
1de1b04c4f
Land #9919 , add libuser roothelper privilege escalation exploit
2018-05-15 11:58:14 -07:00
William Vu
0aaae09e5c
Land #9980 , PAN-OS readSessionVarsFromFile exploit
2018-05-09 17:48:53 -07:00
Brent Cook
3b7d2c8177
Land #9853 , Update Linux sock_sendpage local exploit module
2018-04-26 16:06:10 -07:00
bwatters-r7
a44bcff2d8
Land #9756 , Add lastore-daemon D-Bus Privilege Escalation exploit
...
Merge branch 'land-9756' into upstream-master
2018-04-23 11:21:10 -07:00
bwatters-r7
d2a43d934d
Land # 9247, Add ASUS infosvr Auth Bypass Command Execution exploit
...
Merge branch 'land-9247' into upstream-master
2018-04-23 11:21:10 -07:00
h00die
e57a1fbd43
Land #9650 netgear telnetenable exploit
2018-03-05 07:42:48 -08:00
bwatters-r7
ac6fede928
Land #9441 , Create exploit for AsusWRT LAN RCE
...
Merge branch 'land-9441' into upstream-master
2018-02-23 08:31:01 -08:00
h00die
37cb2d77e7
Land #9422 abrt race condition priv esc on linux
2018-02-12 11:55:21 -06:00
Pearce Barry
6c3168c541
Land #9536 , Add Ubuntu notes to documentation
2018-02-12 11:55:19 -06:00
Pearce Barry
73bcec5d11
Land #9408 , Add Juju-run Agent Privilege Escalation module (CVE-2017-9232)
2018-02-12 11:55:19 -06:00
h00die
090f7c8bd6
Land #9467 linux priv esc against glibc origin
2018-02-12 11:55:19 -06:00
h00die
cd7187023c
Land #9469 linux local exploit for glibc ld audit
2018-02-12 11:55:18 -06:00
h00die
5457cec81c
Land #9493 updates to various docs
2018-02-06 23:33:58 -06:00
h00die
016af01fd8
Land #9399 a linux priv esc against apport and abrt
2018-02-02 11:32:29 -06:00
bwatters-r7
8f2de5cd41
Land #9205 , Documentation for Kaltura <= 13.1.0 RCE (CVE-2017-14143)
...
Merge branch 'land-9205' into upstream-master
2018-01-24 17:13:05 -06:00
Brent Cook
5ec3da843e
Land #9349 , GoAhead LD_PRELOAD CGI Module
2018-01-24 17:12:47 -06:00
Wei Chen
6510ee53bc
Land #9204 , Add exploit for Samsung SRN-1670D (CVE-2017-16524)
...
Land #9204
2018-01-10 20:15:29 -06:00
Wei Chen
18c179a091
Update module and add documentation
...
This updates the module to pass:
* msftidy
* Ruby style guidelines
* Proper usage of Metasploit API
* Mostly other cosmetic fixes
A documentation is also added.
2018-01-10 20:13:42 -06:00
Brent Cook
520e890520
Land #8581 , VMware Workstation ALSA Config File Local Privilege Escalation
2018-01-03 21:35:57 -06:00
William Vu
c3f10c1d57
Land #9336 , Linksys WVBR0-25 exploit
2018-01-03 18:13:44 -06:00
headlesszeke
589de0483b
Clarification in product linkage and small syntax fixup in repro steps
2018-01-03 17:00:26 -06:00
dmohanty-r7
a5fa63405f
Land #9206 , Add Xplico RCE exploit module
2018-01-03 16:02:51 -06:00
headlesszeke
3b0f0aa358
Adding doc file for module linksys_wvbr0_user_agent_exec_noauth
2018-01-02 14:54:18 -06:00
Tod Beardsley
e6de25d63b
Land #9316 Cambium modules and mixins, tx @juushya
...
These cover several of the CVEs mentioned in
https://blog.rapid7.com/2017/12/19/r7-2017-25-cambium-epmp-and-cnpilot-multiple-vulnerabilities/
2017-12-26 12:39:51 -06:00
Tod Beardsley
c2b8d23854
Kill trailing whitespace
2017-12-18 16:56:09 -06:00
Tod Beardsley
65da14c165
Adding docs for modules
2017-12-18 16:47:43 -06:00
Zenofex
d174ef3a70
Add wd_mycloud_multiupload_upload exploit
2017-11-28 07:12:00 -06:00
Jon Hart
879db5cf38
Land #9050 , @mpizala's improvements to the docker_daemon_tcp module
2017-11-21 17:13:24 -08:00
Martin Pizala
90d6165e68
bypass user namespaces docs
2017-11-19 22:10:39 +01:00
Mehmet İnce
54936b6ac3
Updatig documentation and tweaking initiate_session
2017-11-15 01:04:06 +03:00
Mehmet İnce
86e47589b0
Add xplico remote code execution
2017-11-14 09:30:57 +03:00
William Vu
3936d3baa1
Clean up module
2017-11-10 18:15:22 -06:00
Austin
646c7f7c0a
update doc
2017-11-04 11:40:32 -04:00