adfoster-r7
|
81f1a7c86a
|
Fix elasticsearch traversal check support
|
2026-04-21 15:18:58 +01:00 |
|
jenkins-metasploit
|
3106aef203
|
automatic module_metadata_base.json update
|
2026-04-16 08:21:35 +00:00 |
|
Diego Ledda
|
214256ffe8
|
Merge pull request #21310 from zeroSteiner/fix/remove-eshell-payloads
Remove the encrypted shell payload and libs
|
2026-04-16 04:13:02 -04:00 |
|
jenkins-metasploit
|
796ffb6331
|
automatic module_metadata_base.json update
|
2026-04-15 19:31:55 +00:00 |
|
Brendan
|
c17c301e36
|
Merge pull request #21095 from LucasCsmt/multi/http/churchcrm_db_restore_rce
Adds exploit module for ChurchCRM authenticated RCE (CVE-2025-68109)
|
2026-04-15 14:22:56 -05:00 |
|
jenkins-metasploit
|
aad2c79603
|
automatic module_metadata_base.json update
|
2026-04-15 17:39:53 +00:00 |
|
adfoster-r7
|
cb45c37eea
|
Merge pull request #21309 from sfewer-r7/fortiweb-fix1
Improve the fortinet_fortiweb_create_admin aux module check method
|
2026-04-15 18:31:03 +01:00 |
|
Spencer McIntyre
|
91633fdad7
|
Remove the encrypted shell payload and libs
|
2026-04-15 12:43:29 -04:00 |
|
sfewer-r7
|
ad1dac2a5b
|
fix false posatives in the check method by implementing the same check logic as modules/exploits/linux/http/fortinet_fortiweb_rce.rb
|
2026-04-15 17:37:29 +01:00 |
|
Diego Ledda
|
c81a2ee9e3
|
Merge pull request #21287 from zeroSteiner/fix/exe-compat
Fix EXE template compatibility with Windows Server 2000
|
2026-04-15 11:30:34 -04:00 |
|
adfoster-r7
|
0ba59a1254
|
Update documentation/modules/exploit/multi/http/churchcrm_db_restore_rce.md
Co-authored-by: Brendan <bwatters@rapid7.com>
|
2026-04-15 16:07:43 +01:00 |
|
adfoster-r7
|
7f413ef68f
|
Merge pull request #21291 from sjanusz-r7/add-notes-to-module-info-over-rpc
Return notes for module over RPC
|
2026-04-15 14:33:30 +01:00 |
|
adfoster-r7
|
c3cc091a2f
|
Merge pull request #21289 from sjanusz-r7/rpc-hosts-returns-comments
Return comments for hosts over RPC
|
2026-04-15 14:31:35 +01:00 |
|
adfoster-r7
|
d2f350f627
|
Merge pull request #21290 from dledda-r7/fix/payload-cached-size-debug
Fix annoying bug for payload cached size
|
2026-04-14 22:58:19 +01:00 |
|
Spencer McIntyre
|
862b1e1aaa
|
Add the test since it'll work now
|
2026-04-14 17:28:44 -04:00 |
|
Spencer McIntyre
|
e8e5362aa9
|
Bump rex-bin_tools to 0.1.16
|
2026-04-14 17:28:35 -04:00 |
|
jenkins-metasploit
|
e2dff5cc50
|
automatic module_metadata_base.json update
|
2026-04-14 20:15:55 +00:00 |
|
Diego Ledda
|
1d5eae0f5b
|
Merge pull request #21034 from Chocapikk/add-module-opendcim-sqli-rce
Add openDCIM install.php SQLi to RCE module
|
2026-04-14 16:04:13 -04:00 |
|
Diego Ledda
|
b13b669aaa
|
Add MeterpreterDebugBuild option to payload options
Added 'MeterpreterDebugBuild' option to payload options.
|
2026-04-14 21:46:21 +02:00 |
|
Diego Ledda
|
addcd69205
|
Merge pull request #20933 from madefourit/persis_pwrshell_profile
Windows Persistence: Powershell Profile
|
2026-04-14 15:43:06 -04:00 |
|
Diego Ledda
|
31a2de9562
|
Merge pull request #20839 from h00die/bits
New persistence module: Microsoft Bits
|
2026-04-14 15:42:55 -04:00 |
|
Spencer McIntyre
|
b3d367f1bf
|
Merge pull request #21085 from dledda-r7/issue-19309
Update block-api to prepare for a random IV
|
2026-04-14 15:35:10 -04:00 |
|
Spencer McIntyre
|
53f8053b77
|
Merge pull request #21255 from mxnvel/payloads-multi-python-support
multi python support for cmd/unix/reverse_python and cmd/unix/reverse_python_ssl
|
2026-04-14 15:25:09 -04:00 |
|
adfoster-r7
|
43ffa96f34
|
Merge pull request #21298 from bwatters-r7/fix/marshal_validator
Fix sign-extension formula in marshal validator
|
2026-04-14 20:14:09 +01:00 |
|
bwatters-r7
|
b4084eaaa6
|
Fix sign-extension formula
|
2026-04-14 12:56:32 -05:00 |
|
sjanusz-r7
|
4383ad6673
|
Return comments for hosts over RPC
|
2026-04-14 17:25:18 +01:00 |
|
Spencer McIntyre
|
8dab0bbba0
|
Add tests so this doesn't break again in the future
|
2026-04-14 11:32:38 -04:00 |
|
jenkins-metasploit
|
9f1dc3d9f9
|
automatic module_metadata_base.json update
|
2026-04-14 15:19:17 +00:00 |
|
Diego Ledda
|
7ea55d86d9
|
fix: update from srvhost to srvhost_addr
|
2026-04-14 17:16:54 +02:00 |
|
Diego Ledda
|
976f5a8e66
|
fix: remove unecessary srvhost check
|
2026-04-14 17:14:51 +02:00 |
|
Brendan
|
ee5ba948d7
|
Merge pull request #21286 from Hemang360/add-def_mkdir-toggle
Add cleanup toggle to file mixin mkdir method
|
2026-04-14 10:10:09 -05:00 |
|
Brendan
|
4c421532d6
|
Merge pull request #21288 from g0tmi1k/AutoCheck
Add AutoCheck to various exploit modules
|
2026-04-14 09:59:25 -05:00 |
|
jenkins-metasploit
|
dbcb702e1d
|
automatic module_metadata_base.json update
|
2026-04-14 14:41:11 +00:00 |
|
msutovsky-r7
|
5b6c2be9d1
|
Land #21003, unifies Selenium Firefox and Chrome modules
Unified Selenium Grid/Selenoid RCE with Firefox + Chrome auto-detection
|
2026-04-14 16:32:06 +02:00 |
|
Spencer McIntyre
|
b6dd5bbcfc
|
Switch to building with powershell and add patch
Need to patch the headers for compatibility with Server 2000
|
2026-04-14 10:31:29 -04:00 |
|
Diego Ledda
|
1b195b1406
|
fix: removing ARCH_AARCH64 from powershell_profile persistence
|
2026-04-14 09:45:47 -04:00 |
|
madefourit
|
9433413166
|
final module fixes
|
2026-04-14 09:45:46 -04:00 |
|
madefourit
|
a94dd32492
|
final module
|
2026-04-14 09:45:46 -04:00 |
|
madefourit
|
05914feb4d
|
module docs and description_formatted
|
2026-04-14 09:45:45 -04:00 |
|
madefourit
|
0ba93b6ae3
|
module docs and description
|
2026-04-14 09:45:45 -04:00 |
|
h00die
|
14cd7fad47
|
module docs
|
2026-04-14 09:45:44 -04:00 |
|
h00die
|
4474c77ca3
|
update pshell module
|
2026-04-14 09:45:44 -04:00 |
|
h00die
|
9e506cc5a0
|
update pshell module
|
2026-04-14 09:45:43 -04:00 |
|
h00die
|
9189436a42
|
payload debugging
|
2026-04-14 09:45:43 -04:00 |
|
h00die
|
3c341e3b72
|
update pshell module
|
2026-04-14 09:45:42 -04:00 |
|
madefourit
|
c03a9a5ce2
|
update modules_2
|
2026-04-14 09:45:42 -04:00 |
|
madefourit
|
f255fe398d
|
update modules
|
2026-04-14 09:45:41 -04:00 |
|
madefourit
|
17a5daabf1
|
inital modules
|
2026-04-14 09:45:41 -04:00 |
|
madefourit
|
e2810a791b
|
Add Profile and initial skeleton
|
2026-04-14 09:45:40 -04:00 |
|
Diego Ledda
|
18c11b17a9
|
Update modules/exploits/windows/persistence/bits.rb
|
2026-04-14 14:34:00 +02:00 |
|