h00die-gr3y
|
8d7907edee
|
Update based on @jheysel-r7 comments
|
2024-01-23 10:10:21 +00:00 |
|
h00die-gr3y
|
919c846064
|
Final small updates (removed UDP and corrected typo in release date
|
2024-01-20 11:27:10 +00:00 |
|
h00die-gr3y
|
e7f2abbf9e
|
Small typo update
|
2024-01-14 19:26:10 +00:00 |
|
h00die-gr3y
|
85897a2596
|
update adding aarch64 architecture and some new targets
|
2024-01-06 17:26:38 +00:00 |
|
h00die-gr3y
|
94a84960a2
|
Improved check for v3.x routers to obtain exact version
|
2024-01-05 16:20:29 +00:00 |
|
h00die-gr3y
|
eb902457f2
|
small update to module for mt6000 vuln test
|
2024-01-05 13:19:54 +00:00 |
|
h00die-gr3y
|
adf455e8cb
|
Third release of module and documentation
|
2024-01-04 14:01:37 +00:00 |
|
h00die-gr3y
|
b2312c97d3
|
Second release of module and documentation
|
2024-01-04 09:26:16 +00:00 |
|
h00die-gr3y
|
9fdac8fd28
|
First release of module
|
2024-01-03 19:43:49 +00:00 |
|
h00die-gr3y
|
08c5e6a689
|
Draft release of module. Not ready for review
|
2023-12-31 10:19:34 +00:00 |
|
Christophe De La Fuente
|
3182cb4000
|
Land #18612, Craft CMS unauthenticed RCE [CVE-2023-41892]
|
2023-12-22 10:59:39 +01:00 |
|
h00die-gr3y
|
4c404765a4
|
Final update to the module based on cdelafuente-r7 comments
|
2023-12-21 12:06:21 +00:00 |
|
h00die-gr3y
|
5d7cf90521
|
Some minor changes to the module and documentation
|
2023-12-18 08:23:16 +00:00 |
|
h00die-gr3y
|
0641839e69
|
Added documentation and removed debug info
|
2023-12-17 13:10:18 +00:00 |
|
h00die-gr3y
|
db099f8f4c
|
Third release of module
|
2023-12-16 16:06:05 +00:00 |
|
h00die-gr3y
|
d00249f083
|
Second release with manual cleanup of php* files
|
2023-12-14 12:57:07 +00:00 |
|
h00die-gr3y
|
ff44932113
|
first draft release of module
|
2023-12-10 21:09:40 +00:00 |
|
Valentin Lobstein
|
1438a88eb5
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-28 08:10:56 +01:00 |
|
Valentin Lobstein
|
c60da4ad58
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: cgranleese-r7 <69522014+cgranleese-r7@users.noreply.github.com>
|
2023-11-23 17:33:19 +01:00 |
|
Valentin Lobstein
|
d20a1703b1
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: cgranleese-r7 <69522014+cgranleese-r7@users.noreply.github.com>
|
2023-11-23 17:32:57 +01:00 |
|
Balgogan
|
9b050e29ae
|
Add suggested changes
|
2023-11-22 00:53:12 +01:00 |
|
Balgogan
|
fff8d20eb8
|
Add suggested changes
|
2023-11-22 00:50:57 +01:00 |
|
Balgogan
|
2750deedee
|
Update
|
2023-11-21 18:28:28 +01:00 |
|
Valentin Lobstein
|
218f652429
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-21 17:08:55 +01:00 |
|
Balgogan
|
58425df0ef
|
Update vinchin_backup_recovery_cmd_inject exploit and documentation
|
2023-11-21 02:09:24 +01:00 |
|
Valentin Lobstein
|
d59d5e5524
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-20 19:07:04 +01:00 |
|
Valentin Lobstein
|
4e1ec6484a
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-20 19:06:51 +01:00 |
|
Valentin Lobstein
|
8eb1f61217
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-20 19:06:41 +01:00 |
|
Valentin Lobstein
|
223cb245ba
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-20 19:06:05 +01:00 |
|
Valentin Lobstein
|
13b19ba537
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-20 19:05:54 +01:00 |
|
Valentin Lobstein
|
00cc8dcc09
|
Update modules/exploits/linux/http/vinchin_backup_recovery_cmd_inject.rb
Co-authored-by: Christophe De La Fuente <56716719+cdelafuente-r7@users.noreply.github.com>
|
2023-11-20 19:05:45 +01:00 |
|
Balgogan
|
42cdda7200
|
Vinchin
|
2023-11-16 18:10:42 +01:00 |
|
Balgogan
|
7482948ab7
|
Fix
|
2023-11-09 20:05:39 +01:00 |
|
Balgogan
|
c5cfc995c2
|
Add vinchin_backup_recovery_cmd_inject
|
2023-11-09 19:47:27 +01:00 |
|
Christophe De La Fuente
|
1cde6198b5
|
Land #18481, MagnusBilling unauthenticated RCE [CVE-2023-30258]
|
2023-11-03 20:42:27 +01:00 |
|
Spencer McIntyre
|
e5790f8d6e
|
Fix a stability issue with the module
Occassionally the module will fail on login if things are running too
quickly. Fix it by retrying like update_user_password does.
|
2023-11-02 17:10:20 -04:00 |
|
Spencer McIntyre
|
27d86be456
|
Remove the REPEATABLE_SESSION tag
The module is generally reliable, but may fail after it's been run multiple
times.
|
2023-11-02 11:11:36 -04:00 |
|
Spencer McIntyre
|
cea4c1f326
|
Feedback from module review
|
2023-11-02 10:17:45 -04:00 |
|
Spencer McIntyre
|
d26742a266
|
Add check code annotations, update AJP link
|
2023-11-02 08:53:56 -04:00 |
|
Spencer McIntyre
|
9c67b92a4d
|
Rename the other TMUI RCE module
|
2023-11-01 16:55:42 -04:00 |
|
Spencer McIntyre
|
7b53592b4f
|
Add module docs
|
2023-11-01 16:55:41 -04:00 |
|
Spencer McIntyre
|
03252913a1
|
Add the check method
|
2023-11-01 16:55:41 -04:00 |
|
Spencer McIntyre
|
714eeaaa3a
|
Finish cleaning the exploit up
|
2023-11-01 16:55:36 -04:00 |
|
Spencer McIntyre
|
c803d6ef7e
|
Fetch the admin hash as a bonus
|
2023-10-31 15:27:31 -04:00 |
|
Spencer McIntyre
|
04388d9e25
|
Initial commit of CVE-2023-46747
|
2023-10-31 09:55:18 -04:00 |
|
h00die-gr3y
|
ad6e4618df
|
third release module with minor text changes
|
2023-10-31 09:29:13 +00:00 |
|
h00die-gr3y
|
bfff35eb63
|
second release module with php fix
|
2023-10-31 09:05:51 +00:00 |
|
h00die-gr3y
|
50b7e0305e
|
first release module
|
2023-10-24 15:29:18 +00:00 |
|
Spencer McIntyre
|
05dd2e1473
|
Land #18351, Apache Superset RCE (CVE-2023-37941)
|
2023-10-12 17:10:10 -04:00 |
|
Spencer McIntyre
|
45be501a50
|
Raise a more specific error message
Check for and raise a more specific error message when the internal
database fails to mount because the path is incorrect.
|
2023-10-10 15:21:35 -04:00 |
|