cgranleese-r7
|
adff497bd2
|
Updates msf5 as well
|
2025-07-17 11:51:29 +01:00 |
|
cgranleese-r7
|
469f102596
|
Updates docs to reflect new default prompt
|
2025-07-17 09:53:40 +01:00 |
|
whotwagner
|
2259de33c1
|
Fixed a txpo in nextcloud_workflows_rce.md
|
2025-05-14 13:40:47 +00:00 |
|
whotwagner
|
09aaf5865c
|
Rearranged code and removed wait_for_payload_session
|
2025-05-13 13:48:56 +00:00 |
|
jenkins-metasploit
|
e819362398
|
automatic module_metadata_base.json update
|
2025-05-13 13:45:30 +00:00 |
|
Valentin Lobstein
|
5cdf7ae175
|
Update documentation/modules/exploit/unix/webapp/cyberpanel_preauth_rce_multi_cve.md
Co-authored-by: jheysel-r7 <Jack_Heysel@rapid7.com>
|
2024-11-30 13:55:02 +01:00 |
|
Chocapikk
|
9c74467950
|
Refactor code + add check and autocheck
|
2024-11-21 22:48:36 +01:00 |
|
Valentin Lobstein
|
f85de40d58
|
Update documentation/modules/exploit/unix/webapp/cyberpanel_preauth_rce_multi_cve.md
Co-authored-by: Julien Voisin <jvoisin@users.noreply.github.com>
|
2024-11-01 15:46:05 +01:00 |
|
Chocapikk
|
3723064ac9
|
Fix typo
|
2024-11-01 08:53:55 +01:00 |
|
Chocapikk
|
616ffe7d18
|
Add CVE-2024-51568
|
2024-11-01 08:48:34 +01:00 |
|
Chocapikk
|
4269615400
|
Add CyberPanel Pre-Auth RCE Exploit Module for CVE-2024-51378 and CVE-2024-51567
|
2024-10-31 22:13:05 +01:00 |
|
Diego Ledda
|
9a245e6e06
|
Land #19485, Module BYOB Unauthenticated RCE (CVE-2024-45256, CVE-2024-45257)
Land #19485, Module BYOB Unauthenticated RCE (CVE-2024-45256, CVE-2024-45257)
|
2024-10-15 17:13:15 +02:00 |
|
Chocapikk
|
10a4b24ed7
|
Better file clean
|
2024-09-27 01:17:07 +02:00 |
|
Valentin Lobstein
|
5408d0b5ac
|
Update documentation/modules/exploit/unix/webapp/byob_unauth_rce.md
|
2024-09-23 18:40:26 +02:00 |
|
Valentin Lobstein
|
b18cb3ecac
|
Update documentation/modules/exploit/unix/webapp/byob_unauth_rce.md
|
2024-09-23 18:40:19 +02:00 |
|
Chocapikk
|
9e6adea0dc
|
Add BYOB Unauthenticated RCE module exploiting arbitrary file write and command injection (CVE-2024-45256, CVE-2024-45257)
|
2024-09-21 04:00:56 +02:00 |
|
Chocapikk
|
ae8df6c34b
|
Add working documentation + working exploit
|
2024-09-18 17:00:18 +02:00 |
|
Chocapikk
|
36621c05d9
|
del documentation/modules/exploit/unix/webapp/spip_rce_form.md
|
2024-08-30 22:22:41 +02:00 |
|
h00die-gr3y
|
b65c7ecb08
|
added support for all openmediavault versions (0.1 - 7.4.2-2)
|
2024-07-20 20:55:33 +00:00 |
|
h00die-gr3y
|
a9f8475bf5
|
moved module + doc to exploit/unix/webapp
|
2024-07-16 15:50:20 +00:00 |
|
Jack Heysel
|
1da4333611
|
Land #18434, Add module for Zoneminder RCE
This PR adds an RCE module for the Zoneminder video
surveillance software system (CVE-2023-26035).
|
2023-11-10 15:15:01 -05:00 |
|
Wolfgang Hotwagner
|
5d5f711dcd
|
updated documentation
|
2023-11-09 22:40:36 +00:00 |
|
Wolfgang Hotwagner
|
58f9a39f72
|
replaced custom timer with rex::stopwatch
updated documentation
|
2023-10-12 11:46:56 +00:00 |
|
h00die
|
557a15a115
|
spelling fixes on docs
|
2023-10-10 14:46:18 -04:00 |
|
Wolfgang Hotwagner
|
2d065d59cf
|
Documentation for exploit module for CVE-2023-26035
|
2023-10-06 17:43:44 +00:00 |
|
jvoisin
|
a4e1952da3
|
Add a module for the latest SPIP vuln
|
2023-04-17 13:41:03 -04:00 |
|
kalba-security
|
b56242c7a2
|
enable MeterpreterTryToFork by default for aerohive_netconfig_lfi_log_poison_rce
|
2022-07-01 06:15:13 -04:00 |
|
space-r7
|
dd0b124e84
|
fix typo in docs, check some responses
|
2022-05-04 17:28:37 -05:00 |
|
krastanoel
|
0f5e31d593
|
Apply suggestions from code review
Update documentation common default options
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2022-05-03 15:43:38 +07:00 |
|
krastanoel
|
bb8c130740
|
Fix docs typo
|
2022-04-28 21:57:18 +07:00 |
|
krastanoel
|
eba436dd99
|
Add Zoneminder Language rce module docs
|
2022-04-28 21:01:00 +07:00 |
|
bwatters
|
4505d7e834
|
Land #15700, Add Aerohive NetConfig <= 10.0r8a RCE (CVE-2020-16152) module
Merge branch 'land-15700' into upstream-master
|
2021-11-11 17:03:54 -06:00 |
|
bwatters
|
5e670638f3
|
Add a line suggesting TryToFork on Meterpreter might prevent the hang after exploitation
|
2021-11-11 16:59:09 -06:00 |
|
kalba-security
|
728965b3c6
|
fix typos in docs
|
2021-11-02 20:04:06 -04:00 |
|
kalba-security
|
f778f5f00a
|
add cleanup, add new info and warning messages, update docs, small improvements
|
2021-11-02 19:58:16 -04:00 |
|
space-r7
|
8185b26a12
|
change should to must in referring to id option
|
2021-11-02 09:15:59 -05:00 |
|
h00die
|
b970e38edb
|
spell betterer
|
2021-10-11 16:44:32 -04:00 |
|
h00die
|
441c1966e2
|
fix IPs
|
2021-10-11 15:33:07 -04:00 |
|
h00die
|
0745bbe4d8
|
pie-register on wordpress
|
2021-10-11 15:25:07 -04:00 |
|
kalba-security
|
6b4aa25490
|
Add Meterpreter support via Linux target with ARCH_ARMLE and cmdstager
|
2021-09-23 18:26:13 -04:00 |
|
kalba-security
|
0d42c36655
|
Specify that newer versions may still be vulnerable as no patch has been confirmed by the vendor
|
2021-09-23 05:19:07 -04:00 |
|
kalba-security
|
b81d44020a
|
Add Aerohive NetConfig 10.0r8a LFI and log poisoning to RCE module and docs
|
2021-09-23 04:57:48 -04:00 |
|
Shelby Pace
|
6d13f0627e
|
formatting changes
|
2021-06-25 16:20:42 +02:00 |
|
Shelby Pace
|
1194e7d0f3
|
add guards, adjust formatting, add docs
|
2021-06-25 16:20:42 +02:00 |
|
Florian CASAGRANDE
|
6e3e27984b
|
Update wp_admin_shell_upload.md
|
2021-06-13 13:53:08 +02:00 |
|
Grant Willcox
|
34697ecc11
|
Apply further fixes from the review process
|
2020-11-09 12:11:25 -06:00 |
|
stasinopoulos
|
2ee9b47023
|
Minor update regrarding Options section
|
2020-11-09 08:59:14 +02:00 |
|
stasinopoulos
|
ad5b0af9c6
|
Fixes n' updates
|
2020-11-08 10:26:31 +02:00 |
|
stasinopoulos
|
a3fac9619c
|
Minor updates
|
2020-10-09 16:32:44 +03:00 |
|
stasinopoulos
|
ded297a756
|
Update openmediavault_rpc_rce.md
|
2020-10-09 12:13:22 +03:00 |
|