Spencer McIntyre
|
ffebf48242
|
Land #13830, Add QEMU/KVM target for CVE-2019-0708
|
2020-07-16 16:00:16 -04:00 |
|
bwatters
|
eb863048f0
|
Land #13741, CVE-2020-5741: Plex rce on Windows
Merge branch 'land-13741' into upstream-master
|
2020-07-16 10:20:50 -05:00 |
|
gwillcox-r7
|
8cfcfe36aa
|
Land #13750, Centralize Cisco, Juniper, Brocade and Ubuiquiti auxiliary modules under networking directory
|
2020-07-16 10:16:52 -05:00 |
|
gwillcox-r7
|
09983771c8
|
Fix up a statment so instead of having an if followed by an else, we use elsif instead inside enum_juniper.rb
|
2020-07-16 10:10:11 -05:00 |
|
gwillcox-r7
|
7cbefaf43d
|
Add in some minor fixes for cisco_asa_extrabacon.rb for RuboCop purposes
|
2020-07-16 09:48:40 -05:00 |
|
h00die
|
8133933d5a
|
more rubocop
|
2020-07-16 05:43:52 -04:00 |
|
Shelby Pace
|
3f820a1ee6
|
Land #13759, add BaselineAuthType option
|
2020-07-13 12:42:07 -05:00 |
|
Brendan Coles
|
b2b88fe902
|
Land #13841, add Msf::Post::Unix.is_root? method
|
2020-07-13 16:23:58 +00:00 |
|
Brendan Coles
|
090b80eea7
|
Add Msf::Post::Unix.is_root? method
|
2020-07-12 00:47:56 +00:00 |
|
Brendan Coles
|
384a71b06a
|
Land #13271, Update auxiliary/server/capture/smtp to store credentials
|
2020-07-11 17:30:06 +00:00 |
|
h00die
|
85bd740640
|
review comments
|
2020-07-11 15:19:16 -04:00 |
|
adfoster-r7
|
7e7881fbfa
|
Land #13730, Add Pandora FMS Events Remote Code Execution (CVE-2020-13851) module and docs
|
2020-07-11 13:10:47 +01:00 |
|
Jeffrey Martin
|
c61f34ed16
|
Land #13596, [GSoC] SQLi library with support to MySQL (and MariaDB)
|
2020-07-10 13:45:47 -05:00 |
|
Shelby Pace
|
8627cb2c35
|
Land #13626, checkvm post module cleanup
|
2020-07-10 13:31:03 -05:00 |
|
Brendan Coles
|
00d0d2cf15
|
Use service_exists? method
|
2020-07-10 18:10:26 +00:00 |
|
kalba-security
|
957042f0a3
|
Nuke redundant force-exploit advanced option
|
2020-07-09 17:24:19 -04:00 |
|
kalba-security
|
df42399f61
|
Add installation instructions to docs
|
2020-07-09 17:20:07 -04:00 |
|
kalba-security
|
dc34acd070
|
Push to test autocheck issue
|
2020-07-09 16:43:18 -04:00 |
|
kalba-security
|
6bb20f41d8
|
Code review changes
|
2020-07-09 15:21:13 -05:00 |
|
kalba-security
|
36397a3e8f
|
Add cmdstager support
|
2020-07-09 15:21:12 -05:00 |
|
kalba-security
|
3ac3dcb3cf
|
Incorporate suggestios from code review
|
2020-07-09 15:21:12 -05:00 |
|
kalba-security
|
c2abb40890
|
Fix HTTP timeout
|
2020-07-09 15:21:12 -05:00 |
|
kalba-security
|
3eceeca911
|
Add Pandora FMS Events Remote Code Execution module and docs
|
2020-07-09 15:21:12 -05:00 |
|
Shelby Pace
|
895c170394
|
Land #13769, add FortiMail auth bypass scanner
|
2020-07-09 09:28:45 -05:00 |
|
Shelby Pace
|
ef3545d620
|
rubocop module
|
2020-07-09 09:26:39 -05:00 |
|
Patrick
|
78c5d57a32
|
Added output of build information as replacement for the missing version info
|
2020-07-09 09:28:35 +02:00 |
|
Stefan Pietsch
|
4c1b075679
|
Add QEMU/KVM target for CVE-2019-0708
|
2020-07-08 23:32:16 +02:00 |
|
William Vu
|
398c13a1b2
|
Add Mikhail Klyuchnikov's writeup as a reference
|
2020-07-08 14:36:42 -05:00 |
|
William Vu
|
ee240393f4
|
Credit Mikhail Klyuchnikov for CVE-2019-19781
|
2020-07-08 14:35:16 -05:00 |
|
Patrick
|
9b57c5347e
|
Refactoring based on suggestions by bcoles
|
2020-07-08 16:37:14 +02:00 |
|
Patrick
|
75dde9551d
|
Added suggestions of msftidy
|
2020-07-08 14:24:34 +02:00 |
|
Patrick
|
2e96990714
|
Refactored checking method
|
2020-07-08 14:22:50 +02:00 |
|
Patrick
|
517180e8d8
|
Integrated reporting to database
|
2020-07-08 13:15:28 +02:00 |
|
Spencer McIntyre
|
16ff439296
|
Land #13807, Add F5 BIG-IP TMUI Directory Traversal and File Upload RCE (CVE-2020-5902)
|
2020-07-07 13:44:01 -04:00 |
|
William Vu
|
d726a2cdcb
|
Fix a few final things
|
2020-07-07 12:06:05 -05:00 |
|
Patrick
|
b4e7815d80
|
added more suggestions by space-r7
|
2020-07-07 12:06:40 +02:00 |
|
Patrick
|
361df36f33
|
Apply suggestions from code review by space-r7
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2020-07-07 10:56:27 +02:00 |
|
h00die
|
456bf6b948
|
update escapes
|
2020-07-07 01:17:26 -04:00 |
|
William Vu
|
c8176b803a
|
Add version information to the description
|
2020-07-06 16:24:22 -05:00 |
|
William Vu
|
7ef4cb64ad
|
Tweak timeouts to avoid a race condition
|
2020-07-06 14:30:27 -05:00 |
|
William Vu
|
be90526d5f
|
Add vuln discovery credit and reference
|
2020-07-06 14:26:52 -05:00 |
|
Shelby Pace
|
a2309f018e
|
Land #13740, add springcloud dir traversal
|
2020-07-06 09:48:40 -05:00 |
|
Shelby Pace
|
224005ee7a
|
Remove trailing comma
|
2020-07-06 09:47:58 -05:00 |
|
William Vu
|
41bb4d3a8d
|
Add dir_trav method back in
I was wondering why I refactored it away. Oh, I needed it.
|
2020-07-05 18:23:45 -05:00 |
|
William Vu
|
1f765d0e1f
|
Upgrade CheckCodes, since the dir traversal passed
|
2020-07-05 16:29:53 -05:00 |
|
William Vu
|
6e7701ba21
|
Add rudimentary check method
|
2020-07-05 16:18:03 -05:00 |
|
William Vu
|
0417e88ff2
|
Add F5 BIG-IP TMUI RCE (CVE-2020-5902)
|
2020-07-05 15:22:15 -05:00 |
|
William Vu
|
36b5d237fa
|
Make cmd/unix target types consistent to :unix_cmd
There were some using :unix_command, and it was just an oversight.
|
2020-07-05 11:16:47 -05:00 |
|
Brendan Coles
|
f9a5de87f8
|
Land #13789, Add OpenSIS Unauthenticated PHP Code Execution module
|
2020-07-04 15:49:45 +00:00 |
|
h00die
|
89332d0056
|
native python for plex unpickle
|
2020-07-03 19:37:18 -04:00 |
|