gwillcox-r7
27ae6c4edd
Land #13986 , Add CVE-2020-16205 exploit for Geutebruck G-CAM
2020-08-17 09:24:32 -05:00
gwillcox-r7
8f80d9b8b6
Minor updates to the documentation to reflect the fact that the username and password could be something other than root/admin
2020-08-17 09:12:02 -05:00
Spencer McIntyre
ea1f3d60f1
Adjust XML whitespace and add commands to the setup docs
2020-08-17 10:03:44 -04:00
William Vu
eda222434f
Execute commands in a shell
2020-08-14 21:46:34 -05:00
William Vu
d3febe3284
Set SSL as a DefaultOption and update RPORT
2020-08-14 21:46:34 -05:00
William Vu
46b6368597
Add Apache OFBiz XML-RPC Java deserialization
2020-08-14 21:46:34 -05:00
ddouhine
5e7c821d6d
Update geutebruck_testaction_exec.md
2020-08-14 23:15:12 +02:00
h00die
cd41d9c3c9
Land #13911 , iphone 4 on ios 7.1.2 safari jit for root
2020-08-14 16:01:14 -04:00
William Vu
a6f7c0c0de
Backport miscellaneous fixes to my modules
2020-08-14 13:40:23 -05:00
h00die
82c25ebd88
add docs to safari jit
2020-08-14 14:14:08 +07:00
gwillcox-r7
dc21773f10
Apply updates to make the English a bit neater r.e affected versions. Also applied updates to make the markdown have bullet points so it displays better. Finally modified up the module description to explain the actual issue a bit more, but it might still need work
2020-08-13 15:13:55 -05:00
ddouhine
42a2a77a7e
Update geutebruck_testaction_exec.md
...
or now... (forgot the msftidy_docs just before)
2020-08-13 14:29:29 -05:00
ddouhine
e4f760691e
Update geutebruck_testaction_exec.md
...
it should be better now :)
2020-08-13 14:29:29 -05:00
ddouhine
a14a2fe8d2
Add documentation for Geutebruck G-CAM exploit
2020-08-13 14:29:28 -05:00
Spencer McIntyre
24b1235cf7
Whitespace adjustment and remove superfluous return statements
2020-08-12 13:59:25 -04:00
Zenofex
0dab52ef35
A few last changes from msftidy and msftidy_docs.
2020-08-09 18:25:13 -05:00
Zenofex
661e2a680b
Initial push of exploit and module for vbulletin_widget_template_rce vulnerability.
2020-08-09 17:38:52 -05:00
gwillcox-r7
a8e77217b5
Land #13945 , Updates for PsExec documentation
2020-08-06 12:34:16 -05:00
gwillcox-r7
7797a52bd2
Ninja edit for msftidy_docs.rb compliance purposes
2020-08-06 12:33:22 -05:00
gwillcox-r7
d2b1d97b62
Land #13940 , Compliance and Typo Edits for baldr_upload_exec
2020-08-06 11:25:31 -05:00
gwillcox-r7
2ca508c08e
Further edits for RuboCop and msftidy_docs.rb compliance
2020-08-06 11:18:39 -05:00
gwillcox-r7
5c6530d9e5
Update module description and documentation to have a better description of what is going on and to also fix further copies of the typos that were pointed out.
2020-08-06 10:50:47 -05:00
Spencer McIntyre
06702abec0
Update the documentaiton for PsExec
2020-08-06 11:36:22 -04:00
Jeffrey Martin
35017886b8
Land #13935 , Preliminary Version 6
2020-08-06 10:19:34 -05:00
gwillcox-r7
94d7d766c8
Land #13191 , Add addtional sqlmap and jtr files to check_external_scripts.rb
2020-08-05 12:51:21 -05:00
bwatters
fade2c76b5
Land #13904 , Added Module: priviledged docker container escape
...
Merge branch 'land-13904' into upstream-master
2020-08-04 14:39:17 -05:00
h00die
9663d3378f
add sqlmap decloak
2020-08-04 08:48:30 -04:00
gwillcox-r7
6ed05df308
Land #13517 , Documalis Free PDF Editor and Free PDF Scanner JPEG PDF Stack Buffer Overflow
2020-08-03 14:11:50 -05:00
Jeffrey Martin
9aa26d1208
Merge upstream into 6.x
2020-08-03 11:43:47 -05:00
gwillcox-r7
2d5fa912c3
Apply fixes to documentation to fix some errors and make it msftidy_docs.rb compliant. Also apply RuboCop updates to the module
2020-07-31 17:36:51 -05:00
Spencer McIntyre
a32d4c2a20
Land #13875 , CVE-2020-8010 & CVE-2020-8012
2020-07-31 09:08:36 -04:00
Spencer McIntyre
2fb89f47c2
Apply suggestions from msftidy_docs for nimcontroller_bof
2020-07-31 09:08:13 -04:00
gwillcox-r7
2ef43ab7d0
Land #13920 , CVE-2020-1147 SharePoint Deserialization RCE
2020-07-29 16:10:32 -05:00
Spencer McIntyre
4fa657d6eb
Fix a bunch of documentation typos and minor code cleanups
2020-07-29 16:30:44 -04:00
Spencer McIntyre
a886177b96
Land #13837 , Add FreeBSD ip6_setpktopt Use-After-Free Privilege Escalation module
2020-07-29 15:40:47 -04:00
Spencer McIntyre
7af4297e86
Add the exploit for CVE-2020-1147
2020-07-29 11:58:38 -04:00
Shelby Pace
18b5ddbfdc
Land #13891 , add Baldr file upload rce
2020-07-28 17:20:21 -05:00
Matthew Rollings
f379f56b86
Update documentation/modules/exploit/linux/local/docker_priviledged_container_escape.md
...
Co-authored-by: bcoles <bcoles@gmail.com >
2020-07-26 09:43:58 +01:00
Brendan Coles
95b99ce5cf
Use Msf::Exploit::Remote::AutoCheck
2020-07-26 08:04:37 +00:00
Brendan Coles
0ac11a58da
Remove indentation
2020-07-26 08:04:37 +00:00
Brendan Coles
fbc77f7576
Add FreeBSD ip6_setpktopt Use-After-Free Privilege Escalation module
2020-07-26 08:04:37 +00:00
stealthcopter
09994b3e51
Typos in readme
2020-07-25 12:17:56 +01:00
stealthcopter
3d3dcc503f
Added docker priviledged container escape
2020-07-25 12:14:30 +01:00
Ege Balcı
7985eafda0
Add Baldr Botnet Panel RCE Module
2020-07-24 07:45:43 +03:00
Shelby Pace
bf4d0bf6ee
Land #13828 , add Zentao Pro rce
2020-07-22 09:42:11 -05:00
Shelby Pace
6c066a97ed
add bcoles suggestions
2020-07-22 09:39:17 -05:00
wetw0rk
3d0a7313ef
nimsoft sploit
2020-07-21 11:19:23 -05:00
wetw0rk
d7ae3bd20c
CVE-2020-8010 & CVE-2020-8012 aka Sing About Me, I'm Dying Of Thirst
2020-07-19 17:57:55 -05:00
William Vu
d5d4716b1c
Update TMSH escape reliability notes
...
What's strange is that if the stars align, like if the system has been
"used" enough, the exploit is incredibly reliable. Maybe my test
environment is bonkers.
2020-07-17 06:26:00 -05:00
William Vu
c082ccd337
Make Meterpreter the default target
2020-07-17 06:10:53 -05:00