bcoles
|
3272ee0f28
|
Modules: Convert DisableNops property to Boolean in several modules
|
2025-06-10 23:57:52 +10:00 |
|
Julien Voisin
|
08c5654ef2
|
Update modules/exploits/freebsd/samba/trans2open.rb
Co-authored-by: cgranleese-r7 <69522014+cgranleese-r7@users.noreply.github.com>
|
2025-06-02 16:05:12 +02:00 |
|
Julien Voisin
|
0106a4440e
|
Merge branch 'master' into aka_equationgroup
|
2025-05-30 17:17:54 +02:00 |
|
bcoles
|
8e5cfc0625
|
modules/exploits/freebsd: Add Notes and resolve RuboCop violations
|
2025-04-13 00:38:37 +10:00 |
|
cgranleese-r7
|
0017fbdf56
|
Updates more dead links
|
2025-02-28 10:30:14 +00:00 |
|
jvoisin
|
b988b49f27
|
Add Notes->AKA for EquationGroup codenames
Sources used:
- https://www.rapid7.com/blog/post/2017/04/18/the-shadow-brokers-leaked-exploits-faq/
- https://github.com/x0rz/EQGRP
|
2025-02-23 20:36:12 +01:00 |
|
sjanusz-r7
|
566e12b69e
|
Add error_callback to SSH Command Stream
|
2024-11-25 16:43:59 +00:00 |
|
adfoster-r7
|
62a3f73e70
|
Update rubocop target ruby version
|
2024-07-24 16:47:17 +01:00 |
|
softScheck
|
d68a57f649
|
junos_ssh_jail: replaced asdf with alphanumeric random string
|
2024-06-14 10:45:19 +02:00 |
|
softScheck
|
0a34168906
|
junos_ssh_jail: revert to old get_csrf_token method with securephpsessid added
|
2024-06-14 10:38:24 +02:00 |
|
softScheck
|
8a3262ae6c
|
junos_ssh_jail: style and formatting rubocop
|
2024-06-12 12:14:36 +02:00 |
|
softScheck
|
c7509d0a6c
|
junos_phprc: HttpClientTimeout as default
|
2024-06-06 19:27:59 +02:00 |
|
softScheck GmbH
|
0c69968e4f
|
junos_phprc: removed commented out line
Co-authored-by: Simon Janusz <85949464+sjanusz-r7@users.noreply.github.com>
|
2024-06-06 16:03:35 +02:00 |
|
softScheck GmbH
|
769eb071cb
|
junos_phprc: use faker IPv4
Co-authored-by: Simon Janusz <85949464+sjanusz-r7@users.noreply.github.com>
|
2024-06-06 16:03:00 +02:00 |
|
softScheck
|
00ff617056
|
junos_phprc: session creation, old version switch, allow ssh root login, working timeouts
|
2024-06-03 18:33:06 +02:00 |
|
fanqiaojun
|
6b2bdc893b
|
chore: remove repetitive words
Signed-off-by: fanqiaojun <fanqiaojun@yeah.net>
|
2024-04-15 11:06:50 +08:00 |
|
Jack Heysel
|
37bc4ca51f
|
Fixed root password resetting
|
2023-09-29 11:40:03 -04:00 |
|
Jack Heysel
|
58642c16c9
|
Changed WebSocket to SSH
|
2023-09-28 14:41:03 -04:00 |
|
Jack Heysel
|
3f15de3995
|
Responded to Christophes suggestions
|
2023-09-28 14:26:37 -04:00 |
|
Jack Heysel
|
3eaa4adcb7
|
rubocop
|
2023-09-26 18:48:33 -04:00 |
|
Jack Heysel
|
9a1881cbcf
|
jvoisin suggestions
|
2023-09-26 18:42:14 -04:00 |
|
Jack Heysel
|
09f3a98d13
|
Finished JAIL_BREAK addition
|
2023-09-26 16:45:28 -04:00 |
|
Jack Heysel
|
b4539f174d
|
Added JAIL_BREAK option and corresponding methods
|
2023-09-25 19:03:54 -04:00 |
|
Jack Heysel
|
127f0104d2
|
Address review comments
|
2023-09-21 13:36:00 -04:00 |
|
Jack Heysel
|
12de4dd2c7
|
Improved request sending and added watchtower ref
|
2023-09-21 09:45:59 -04:00 |
|
Jack Heysel
|
da8c020d14
|
Junos OS SRX and EX PHPRC Manipulation RCE
|
2023-09-20 16:47:05 -04:00 |
|
Spencer McIntyre
|
baa0f3d5e3
|
Switch the fingerprint resource for v12 compat
Switching to use citrix-fonts.css allows the technique to work for 12.x
and 13.x.
|
2023-08-08 08:57:17 -04:00 |
|
Spencer McIntyre
|
72092392e9
|
Fix check method for v12, add automatic targeting
|
2023-08-08 08:57:11 -04:00 |
|
Spencer McIntyre
|
760bc3fbfb
|
Add a target for 12.1-64.17
|
2023-08-04 16:21:21 -04:00 |
|
Spencer McIntyre
|
c3324ab002
|
Add a target for 12.1-65.25
|
2023-08-04 15:14:24 -04:00 |
|
Spencer McIntyre
|
67e1c57b7c
|
Fix some buffer encoding issues
|
2023-08-03 12:47:14 -04:00 |
|
Spencer McIntyre
|
930c90c3ac
|
Update all targets so the stack can be relocated
|
2023-08-02 14:49:04 -04:00 |
|
Spencer McIntyre
|
b365ab7d10
|
Add a target for 13.1-37.38
|
2023-08-02 13:57:53 -04:00 |
|
Spencer McIntyre
|
5d0b6e1fbc
|
Add a target for 13.0-91.12
|
2023-08-02 12:48:34 -04:00 |
|
Spencer McIntyre
|
eb5be5746c
|
Add a basic check method to detect Citrix
|
2023-08-01 12:17:30 -04:00 |
|
Spencer McIntyre
|
f787bcd04f
|
Define the space for the payload
|
2023-07-31 18:06:38 -04:00 |
|
Spencer McIntyre
|
de6508c3e3
|
Initial commit of CVE-2023-3519
|
2023-07-31 17:30:52 -04:00 |
|
bcoles
|
a83d070396
|
exploits/freebsd/local/ip6_setpktopt_uaf_priv_esc: Add Reliability notes
|
2023-02-02 18:45:43 +11:00 |
|
bcoles
|
ef87a63bde
|
modules: Check datastore ForceExploit before checking if session is root
|
2023-02-02 18:17:02 +11:00 |
|
adfoster-r7
|
4a9a15e638
|
Run Rubocop layout rules on modules
|
2021-08-27 17:19:43 +01:00 |
|
William Vu
|
9e6f425427
|
Move exploit/linux/http/citrix_dir_traversal_rce
To exploit/freebsd/http/citrix_dir_traversal_rce. It's actually FreeBSD.
|
2021-04-15 19:13:25 -05:00 |
|
capme
|
b99114787a
|
re-adding first check, but not including [^ ]
|
2021-03-17 06:51:08 +07:00 |
|
capme
|
294a1a275c
|
dropping extra version c that stated vulnerable
|
2021-03-17 06:20:59 +07:00 |
|
capme
|
26c653ef4a
|
implement also for freebsd
|
2021-03-17 06:13:51 +07:00 |
|
Alan Foster
|
5b3fde7735
|
Rubocop recently landed modules
|
2021-02-16 15:08:08 +00:00 |
|
Christophe De La Fuente
|
a939704f9d
|
Add an SNMPPORT options
|
2020-12-16 15:15:27 +01:00 |
|
Christophe De La Fuente
|
60bcc95edc
|
Fix documentation
|
2020-12-16 15:15:27 +01:00 |
|
Christophe De La Fuente
|
a6102bd8ac
|
Make rubocop happy
|
2020-12-16 15:15:27 +01:00 |
|
Christophe De La Fuente
|
99d3f66271
|
Add authentication and refactor
|
2020-12-16 15:15:27 +01:00 |
|
Christophe De La Fuente
|
08f051e959
|
Apply rubocop
|
2020-12-16 15:15:27 +01:00 |
|