bwatters
|
eb863048f0
|
Land #13741, CVE-2020-5741: Plex rce on Windows
Merge branch 'land-13741' into upstream-master
|
2020-07-16 10:20:50 -05:00 |
|
bwatters
|
ceea94c368
|
Update docs for installation of target software
|
2020-07-16 10:16:48 -05:00 |
|
h00die
|
89332d0056
|
native python for plex unpickle
|
2020-07-03 19:37:18 -04:00 |
|
h00die
|
a99a3c2d75
|
working albumn_name length thanks to acammack
|
2020-06-30 00:28:57 -04:00 |
|
h00die
|
94cc286689
|
update docs and 401 handling code
|
2020-06-24 21:05:23 -04:00 |
|
h00die
|
533bed6b51
|
pre review updates
|
2020-06-22 06:30:44 -04:00 |
|
h00die
|
3dcf622ad6
|
add link to software
|
2020-06-20 00:12:05 -04:00 |
|
h00die
|
9defe33d9a
|
docs and working module
|
2020-06-20 00:06:46 -04:00 |
|
h00die
|
c2c931030f
|
review comments
|
2020-06-17 11:47:11 -04:00 |
|
h00die
|
4702d87684
|
cleanup
|
2020-06-12 10:46:44 -04:00 |
|
h00die
|
aec1f77b70
|
wip
|
2020-06-10 20:42:22 -04:00 |
|
h00die
|
b5c90ea20c
|
xpost working
|
2020-06-09 13:07:00 -04:00 |
|
William Vu
|
fe2ab51c8f
|
Update module doc
|
2020-05-21 18:37:13 -05:00 |
|
William Vu
|
55318baad5
|
Add module doc
|
2020-05-21 18:12:57 -05:00 |
|
William Vu
|
655088bb0d
|
Fix punctuation typo in exchange_ecp_viewstate
|
2020-05-20 09:47:11 -05:00 |
|
Spencer McIntyre
|
c128a3ba92
|
Add CmdStager and Powershell targets to the Kentico RCE exploit
|
2020-05-04 10:07:10 -04:00 |
|
Patrick Webster
|
626b9be63c
|
Update kentico_staging_syncserver.md
|
2020-05-04 09:26:14 -04:00 |
|
Patrick Webster
|
affc745ed5
|
Update documentation/modules/exploit/windows/http/kentico_staging_syncserver.md
Typo
Co-Authored-By: bcoles <bcoles@gmail.com>
|
2020-05-04 09:26:13 -04:00 |
|
Patrick Webster
|
376c61bc46
|
Added exploit module kentico_staging_syncserver.
|
2020-05-04 09:26:13 -04:00 |
|
William Vu
|
1318faa992
|
Clarify the quote is from the vendor's advisory
|
2020-04-27 16:53:34 -05:00 |
|
William Vu
|
cefeb9ffde
|
Randomize dir in desktopcentral_deserialization
Also apply RuboCop.
|
2020-04-27 16:13:22 -05:00 |
|
William Vu
|
c5df5355ac
|
Update my module documentation to the new standard
Also update CheckModule to match current style and best practices.
|
2020-04-20 20:06:52 -05:00 |
|
William Vu
|
994097b410
|
Update all my module docs to use "options"
|
2020-04-15 15:47:51 -05:00 |
|
William Vu
|
fbfd47684c
|
Update ManageEngine module doc to new standard
H3 for option names.
|
2020-04-15 15:47:51 -05:00 |
|
William Vu
|
7cf7211b46
|
Refactor desktopcentral_deserialization check
|
2020-04-15 15:47:51 -05:00 |
|
William Vu
|
02ba071b84
|
Punctuate check prints to match CheckCodes
|
2020-04-15 15:47:50 -05:00 |
|
Adam Galway
|
e8d134fc56
|
Land #12096, DNN cookie desrialization exploit
|
2020-04-02 15:57:46 +01:00 |
|
bwatters-r7
|
beb53254c7
|
Land #13122, Add Exploit Module For CVE-2020-0646 (SharePoint Workflows XOML RCE)
Merge branch 'land-13122' into upstream-master
|
2020-03-25 11:24:15 -05:00 |
|
Spencer McIntyre
|
a69f3eb946
|
Use the correct its instead of it's
|
2020-03-24 16:44:18 -04:00 |
|
Spencer McIntyre
|
a0cd00dac7
|
Cleanup module doc and comments for CVE-2020-0646
|
2020-03-24 10:15:58 -04:00 |
|
h00die
|
e7da6e77a5
|
remove and check for instruction text
|
2020-03-24 09:15:04 -04:00 |
|
Spencer McIntyre
|
0832604131
|
Finish up the CVE-2020-0646 SharePoint RCE
|
2020-03-23 18:14:28 -04:00 |
|
William Vu
|
0806e9ef42
|
Add CmdStager target back in so we can debug it
|
2020-03-13 11:17:37 -05:00 |
|
William Vu
|
83387212a7
|
Update language to address different patches
|
2020-03-12 17:50:13 -05:00 |
|
William Vu
|
0b117849d0
|
Note specific patch versions
Hat tip @sranjit-r7.
|
2020-03-12 17:40:46 -05:00 |
|
William Vu
|
ed5dd4dd20
|
Add module doc
|
2020-03-12 17:36:53 -05:00 |
|
Spencer McIntyre
|
77e21de4bd
|
Add additional docs for setting up an environment
|
2020-03-11 15:05:51 -04:00 |
|
Spencer McIntyre
|
4c004d51a7
|
Add an exploit for CVE-2020-0618
|
2020-03-06 16:21:37 -05:00 |
|
dwelch-r7
|
4fe7678b01
|
Land #12910, Add exploit module for apache activemq traversal
|
2020-03-05 15:05:13 +00:00 |
|
kalba-security
|
cd6c01ae9d
|
Add suggestions from code review.
|
2020-03-03 20:17:13 +02:00 |
|
Spencer McIntyre
|
b3867dc200
|
Finish up the cve-2020-0688 module
|
2020-03-02 10:51:25 -05:00 |
|
kalba-security
|
20386f1aa4
|
Add apache_activemq_traversal_upload module and documentation
|
2020-02-04 12:01:41 +02:00 |
|
h00die
|
bd48588fd5
|
catch false positive spaces at eol from code indent
|
2020-01-28 14:28:18 -05:00 |
|
h00die
|
ca59b06fd3
|
module doc standardizations
|
2020-01-20 21:26:59 -05:00 |
|
h00die
|
4b0ab94043
|
module options to options
|
2020-01-16 10:49:22 -05:00 |
|
dwelch-r7
|
938c3a0e76
|
Add module docs
|
2019-10-03 23:22:21 +01:00 |
|
Jacob Robles
|
bbf0cb4d9d
|
Land #11653, Apache Tika CVE-2018-1335 RCE
|
2019-08-01 17:43:57 -05:00 |
|
h00die
|
060183c034
|
tika 1.15-1.17
|
2019-07-30 16:55:06 -04:00 |
|
h00die
|
f053768801
|
restrict tika versions
|
2019-07-30 07:32:30 -04:00 |
|
holdonasec
|
b9c2ec60f5
|
Add DNN Cookie Deserialization RCE Exploit
|
2019-07-16 12:16:53 -04:00 |
|