Commit Graph

79426 Commits

Author SHA1 Message Date
Martin Sutovsky 8a9eeafd1c armle/armbe shellcode update 2026-01-13 08:34:26 +01:00
Martin Sutovsky 8a4265038a armbe/armle jump instruction update 2026-01-13 08:34:26 +01:00
Martin Sutovsky dfc51fdcd9 Fix for lost zero byte in arm64, adding more reliable method for all archs 2026-01-13 08:34:25 +01:00
Martin Sutovsky 2ccbffe67a Fixing jump instruction for aarch64 2026-01-13 08:34:25 +01:00
Martin Sutovsky 0821db9e94 Adding remaining architectures, untested 2026-01-13 08:34:25 +01:00
Martin Sutovsky 7ab1e0dc10 Fix sh option 2026-01-13 08:34:24 +01:00
Martin Sutovsky ff9fe421f5 Rebase, adding sh option 2026-01-13 08:34:24 +01:00
jenkins-metasploit aa5d4d0504 automatic module_metadata_base.json update 2026-01-12 23:23:32 +00:00
Brendan 10d12570c0 Merge pull request #20791 from Chocapikk/webcheck
Add Web-Check screenshot API command injection RCE exploit (CVE-2025-32778)
2026-01-12 17:14:04 -06:00
msutovsky-r7 87da6e2bee Land #20665, adds documentation for ipv6_neighbor_router_advertisement module
Add documentation for ipv6_neighbour_router_advertisement.rb
2026-01-12 15:16:41 +01:00
Martin Sutovsky defa2b1337 Adds reference to protocol, fixes formatting 2026-01-12 14:54:46 +01:00
basicallyabidoof 2f62e7c031 Add documentation for ipv6_neighbor_router_advertisement.rb see https://github.com/rapid7/metasploit-framework/issues/12389 2026-01-12 14:54:46 +01:00
jenkins-metasploit 838dcad772 automatic module_metadata_base.json update 2026-01-09 15:24:11 +00:00
msutovsky-r7 472016b753 Land #20796, moves udev module into persistence category
update udev to persistence mixin
2026-01-09 16:14:08 +01:00
jenkins-metasploit 73bef77cb1 automatic module_metadata_base.json update 2026-01-09 02:17:28 +00:00
jheysel-r7 ae4a5ac986 Merge pull request #20786 from zeroSteiner/feat/lib/mod-merge-target-info
Merge target info into the module info
2026-01-08 18:01:14 -08:00
jheysel-r7 b9be6ac259 Merge pull request #20785 from Chocapikk/react2shell-clean
Update react2shell module: Add Waku framework support
2026-01-08 17:58:48 -08:00
jenkins-metasploit 0e9b938d4f automatic module_metadata_base.json update 2026-01-09 00:53:30 +00:00
jheysel-r7 bb98e855e1 Merge pull request #20751 from h00die/sticky_keys
update windows sticky keys to persistence mixin
2026-01-08 16:44:04 -08:00
jenkins-metasploit 4e2233827b automatic module_metadata_base.json update 2026-01-08 21:27:10 +00:00
Spencer McIntyre da89d98b1e Merge pull request #20847 from dwelch-r7/fix-ssh-login-print-and-docs
Fix extra characters in print and merge docs for ssh_login/ssh_login_pubkey
2026-01-08 16:17:43 -05:00
jenkins-metasploit cb6b96e17b automatic module_metadata_base.json update 2026-01-08 20:54:58 +00:00
Spencer McIntyre f7857f0a4e Merge pull request #20853 from zeroSteiner/fix/bump-payloads/2.0.239
Update metasploit-payloads gem to 2.0.239
2026-01-08 15:45:36 -05:00
Spencer McIntyre 16c1b6fa64 Update payload cached sizes 2026-01-08 15:27:31 -05:00
Spencer McIntyre 86f77beb2e Update metasploit-payloads gem to 2.0.239
Includes changes from:
* rapid7/metasploit-payloads#764
* rapid7/metasploit-payloads#786
2026-01-08 14:58:17 -05:00
Spencer McIntyre 6627686e74 Merge pull request #20850 from dledda-r7/poolparty_injection
Poolparty injection Stubs
2026-01-08 12:01:51 -05:00
Valentin Lobstein 7b1e7d5320 Apply review feedback: move Space limits to targets, use CheckCode::Detected
Co-authored-by: bwatters-r7 <bwatters-r7@users.noreply.github.com>
2026-01-08 16:59:17 +01:00
Valentin Lobstein 0583a4c983 Apply review feedback: revert Platform, simplify framework_config, improve Waku detection
Co-authored-by: jheysel-r7 <jheysel-r7@users.noreply.github.com>
2026-01-08 16:50:55 +01:00
Dean Welch 2867729808 Fix extra characters in print and merge docs for ssh_login/ssh_login_pubkey 2026-01-08 13:57:22 +00:00
jenkins-metasploit 8e6be3940e automatic module_metadata_base.json update 2026-01-08 11:42:27 +00:00
msutovsky-r7 c289ff44b9 Land #20811, adds module for Prison Management System 1.0 RCE (CVE-2024-48594)
Add Prison Management System 1.0 auth RCE (CVE-2024-48594)
2026-01-08 12:33:00 +01:00
Diego Ledda b40fc5afa8 chore: update author information in poolparty shellcode 32-bit 2026-01-08 12:20:43 +01:00
dledda-r7 c5fd212334 docs: add poolparty 32-bit, update poolparty 64-bit stubs 2026-01-08 05:15:28 -05:00
dledda-r7 4774c03888 docs: removing unused sources 2026-01-08 04:46:05 -05:00
jenkins-metasploit ac263282a6 Bump version of framework to 6.4.107 2026-01-08 03:35:47 +00:00
Xorriath 2030d19438 Update modules/exploits/linux/http/prison_management_rce.rb
Co-authored-by: msutovsky-r7 <martin_sutovsky@rapid7.com>
2026-01-07 14:45:03 +02:00
Xorriath 2ef1b9fbae Update modules/exploits/linux/http/prison_management_rce.rb
Co-authored-by: msutovsky-r7 <martin_sutovsky@rapid7.com>
2026-01-07 14:44:51 +02:00
Diego Ledda 23b86eba7e Merge pull request #20848 from msutovsky-r7/fix/lib/exe/x64_to_executable_fix
Fixes typo in generating X64 PE file
6.4.106
2026-01-07 06:36:30 -05:00
Martin Sutovsky 27fc0bf2e2 Fixes typo in to_executable 2026-01-07 12:12:37 +01:00
jenkins-metasploit 0f3ac31712 automatic module_metadata_base.json update 2026-01-07 11:03:11 +00:00
msutovsky-r7 b39e781500 Land #20700, adds module for Taiga.io RCE (CVE-2025-62368)
Adds exploit module for authenticated deserialization vulnerability in Taiga.io (CVE-2025-62368)
2026-01-07 11:53:32 +01:00
jenkins-metasploit d104bdeeb1 automatic module_metadata_base.json update 2026-01-07 00:28:55 +00:00
jheysel-r7 0d21fd4cc9 Merge pull request #20692 from msutovsky-r7/persistence/multi/python-site-specific-config-hook
Adds module for python site-specific hook persistence
2026-01-06 16:19:31 -08:00
jenkins-metasploit 8ce13f05fd automatic module_metadata_base.json update 2026-01-06 19:39:47 +00:00
Spencer McIntyre f545b5b487 Merge pull request #19799 from dledda-r7/fix/mettle-stageless-payload
Fix Linux Stageless Payload to be Shellcodes
2026-01-06 14:30:06 -05:00
dledda-r7 79e2b844dd fix: fixing meterpreter template for zarch, removing prepends 2026-01-06 14:07:29 -05:00
h00die bfec7c378b Update documentation/modules/exploit/windows/persistence/accessibility_features_debugger.md
Co-authored-by: jheysel-r7 <Jack_Heysel@rapid7.com>
2026-01-06 14:00:39 -05:00
Martin Sutovsky d6bffff143 Putting cmd_exec arguments into single argument 2026-01-06 18:38:31 +01:00
jenkins-metasploit 86f13f71de automatic module_metadata_base.json update 2026-01-06 17:03:57 +00:00
jheysel-r7 f0323e8069 Merge pull request #20744 from ptrstr/patch-2
Remove current date constraint from uploaded path in `wp_reflexgallery_file_upload`
2026-01-06 08:54:29 -08:00