Jeffrey Martin
578bf9999f
Land #12955 , Update logic for ForceExploit in modules
2020-02-21 15:45:12 -06:00
bwatters-r7
2db93c9051
Land #12002 , Feature/reverse ssh
...
Merge branch 'land-12002' into upstream-master
2020-02-21 09:17:51 -06:00
h00die
fe0e955dc2
Land #12849 , oracle_login docs
2020-02-21 08:58:16 -05:00
h00die
f451041d4b
oracle_login docs
2020-02-21 08:41:42 -05:00
William Vu
7dc1315dac
Update logic for ForceExploit in my modules
...
This lets the user opt out of running check completely.
2020-02-19 01:06:50 -06:00
Brent Cook
8489bcdfd9
This fixes broken links to the community.rapid7.com blog
...
Performed mechanically with sed, spot-checked that the new blog can consume these links.
2020-02-18 09:06:11 -06:00
Brendan Coles
1db1bed08f
Land #12892 , set default username for mysql and mssql aux login modules
...
Set default username `sa` for auxiliary/scanner/mssql/mssql_login
Set default username `root` for auxiliary/scanner/mysql/mysql_login
Enable `BLANK_PASSWORDS` option by default for both modules,
as the default users make use of a blank password in by default.
2020-02-16 14:20:56 +00:00
h00die
3707d4caa6
use default options
2020-02-08 15:31:27 -05:00
Jeffrey Martin
abd2c3e1fc
adjust moved_from calls to original module names
2020-02-06 10:23:53 -06:00
Jeffrey Martin
2bb91a2262
remove jtr specific modules that are refactored
2020-02-05 16:52:19 -06:00
h00die
2907f4ae16
add default un to my/mssql login
2020-01-30 12:43:18 -05:00
Shelby Pace
ccc7b7747f
Land #12773 , add NVMS directory traversal
2020-01-21 08:44:14 -06:00
Shelby Pace
231c858383
add target_uri to request
2020-01-21 08:43:19 -06:00
Dhiraj Mishra
60b5a1791f
removing def data
...
Thanks bcoles
2020-01-20 15:39:45 +04:00
Dhiraj Mishra
256855b152
Adding TARGETURI
2020-01-18 13:56:13 +05:30
William Vu
7646e43ccf
Land #12776 , PROTOCOL option for sunrpc_portmapper
2020-01-16 14:21:22 -06:00
William Vu
bb583672bf
Fix style
2020-01-16 14:21:09 -06:00
William Vu
0760319ddf
Check for whitespace in [global] directive
2020-01-14 11:21:03 -06:00
William Vu
002fe64057
Update pulse_secure_file_disclosure, too
...
Since I bypassed query/vars_get, send_request_cgi is fine now.
2020-01-14 00:34:06 -06:00
William Vu
16d06b3baa
Prefer send_request_cgi over send_request_raw
2020-01-14 00:25:18 -06:00
William Vu
72d06b0e9c
Update Pulse Secure file disclosure module
...
Just the comment.
2020-01-13 22:27:29 -06:00
William Vu
d996ba5b2c
Revert future-proofed yet shitty case statement
2020-01-13 21:09:07 -06:00
William Vu
249702ea51
Explain credit in scanner
2020-01-13 20:57:35 -06:00
William Vu
c9041dae28
Fix @altjx's Twitter handle (@altonjx)
2020-01-13 20:19:48 -06:00
William Vu
4ac7f81542
Add Twitter handles
2020-01-13 17:54:28 -06:00
William Vu
3354e69c47
Improve smb.conf check and add PATH option
2020-01-13 17:52:14 -06:00
William Vu
94b6b6d082
Clean up module
2020-01-13 16:39:05 -06:00
William Vu
d7deb4e80a
Run rubocop -a
2020-01-13 16:39:05 -06:00
William Vu
f1cc40bd77
Rename module
2020-01-13 16:39:05 -06:00
Alton Johnson
b3bf82be07
Changed permission from executable to just readable
2020-01-11 19:31:38 -05:00
kalba-security
03d6d1aed5
Add citrix_directory_traversal module to /modules/auxiliary/scanner/http/
2020-01-11 22:45:00 +02:00
Dhiraj Mishra
8034db2c5f
Update modules/auxiliary/scanner/http/tvt_nvms_traversal.rb
...
Co-Authored-By: acammack-r7 <adam_cammack@rapid7.com >
2020-01-05 12:53:46 +04:00
Dhiraj Mishra
13b72282a6
Update modules/auxiliary/scanner/http/tvt_nvms_traversal.rb
...
Co-Authored-By: acammack-r7 <adam_cammack@rapid7.com >
2020-01-05 12:53:38 +04:00
Dhiraj Mishra
4b9685005e
Update modules/auxiliary/scanner/http/tvt_nvms_traversal.rb
...
Co-Authored-By: acammack-r7 <adam_cammack@rapid7.com >
2020-01-05 12:53:03 +04:00
Dhiraj Mishra
da06ecc83b
Update modules/auxiliary/scanner/http/tvt_nvms_traversal.rb
...
Co-Authored-By: acammack-r7 <adam_cammack@rapid7.com >
2020-01-05 12:52:47 +04:00
Brent Cook
30ddabba92
add PROTOCOL option for sunrpc_portmapper
2020-01-02 09:52:18 -06:00
Dhiraj Mishra
1263292cde
tvt_nvms_traversal.rb
2020-01-01 15:06:18 +05:30
Brent Cook
4de482f57a
Land #12433 , add Metasploit reverse_http handler DoS module
2019-12-26 13:40:14 -06:00
Brent Cook
d87f752591
add module docs
2019-12-26 13:31:38 -06:00
Brent Cook
b177a8235d
adjust indentation
2019-12-26 13:05:21 -06:00
Brent Cook
3dac95ed32
fix enumeration handling
2019-12-26 13:00:52 -06:00
Brent Cook
ce991071e4
Land #12524 , update most python code with python 3 compatibility
2019-12-23 14:49:08 -06:00
Christophe De La Fuente
87373ccc84
Land #12486 , Small changes to the host_header_injection aux module
2019-12-12 20:11:37 +01:00
Jeffrey Martin
e416f0d886
Land #12363 , Adding Chrome Debugger Gather Auxiliary Module
2019-12-12 10:13:51 -06:00
Nicholas Starke
db05b11fae
Uppercasing Parameters and Dregistering Options
...
This commit uppercases all default parameters and de-registers
certain options like SSL and VHOST.
2019-12-12 09:57:10 -06:00
Nicholas Starke
16910f7e02
Parameter Checks and Success Messaging
...
This commit adds additional parameter checks for nil and adds
a little more descriptive success message that includes the path
to the loot storage location.
2019-12-11 07:35:55 -06:00
Adam Galway
2448914b24
Land 12680, fixes small typo in dns_fuzzer.rb
2019-12-10 15:36:05 +00:00
h00die
ca9a1709bf
iis internal ip references
2019-12-08 16:15:48 -05:00
h00die
6fbab50b9d
iis internal ip references
2019-12-08 16:11:57 -05:00
Brendan Coles
8f19c8a82a
Prefer English over French spelling
2019-12-07 08:01:52 +00:00