lucyoa
382364a3ff
Adding documentation, improving description
2018-05-13 15:04:40 -04:00
lucyoa
c3ad02121c
Exploit for D-Link DSL2750B OS Command Injection vulnerability
2018-05-13 13:58:35 -04:00
Green-m
0ef0fae2b2
rm test code
2018-05-10 22:17:38 -04:00
Green-m
24de2a3cd0
Merge branch 'master' into couchdb_cmd_exec
2018-05-07 02:53:13 -04:00
HD Moore
2a211d99af
Nuke base_directory after all, FileDropper does not like our path
2018-05-06 22:58:06 -05:00
HD Moore
a9f9d61f1e
Use the target_directory, not base
2018-05-06 22:56:59 -05:00
HD Moore
cd48507aab
Use FileDropper, switch to earlier target directory
2018-05-06 22:56:36 -05:00
HD Moore
1f7b13bea8
Additional module cleanup
2018-05-06 22:50:13 -05:00
HD Moore
3d172df0c4
MD5 of TID and cleanup if statement
2018-05-06 22:24:36 -05:00
HD Moore
68f2e08400
Swap to positive logic
2018-05-06 22:22:47 -05:00
HD Moore
9712215e66
Add Bugtraq ID
2018-05-06 22:21:13 -05:00
HD Moore
5d57e9db34
Remove unnecessary RHOST definition
2018-05-06 22:20:51 -05:00
Green-m
96a354ffc4
Merge branch 'couchdb_cmd_exec' of https://github.com/Green-m/metasploit-framework
2018-05-06 23:07:14 -04:00
HD Moore
8141e949fc
Note the runtimes
2018-05-05 18:34:11 -05:00
HD Moore
e775a97ae2
Adds panos_readsessionvars exploit module
2018-05-05 15:41:17 -05:00
BennyHusted
c62fc79537
Fixed typo in description.
2018-05-01 11:37:33 -04:00
BennyHusted
89d6ded805
Removing the Nagios enum module, adding description
2018-05-01 11:35:45 -04:00
BennyHusted
4c8ad3ca9c
Removing old exploit/docs
2018-04-30 22:26:37 -04:00
BennyHusted
ad8bf6d8e3
Renamed exploit to electric boogaloo
2018-04-30 22:20:35 -04:00
Brent Cook
79d8f5e86c
autofilter = false means skip, which is reverse of intuition
2018-04-26 17:20:55 -05:00
BennyHusted
1806c247f1
Fixing tabbed spaces, version number in documentation
2018-04-26 18:15:39 -04:00
root
b547e6282e
Adding print statement to run the corresponding post module
2018-04-26 17:55:31 -04:00
root
37a32c2726
Adding module for Nagios XI remote root exploit.
...
See http://blog.redactedsec.net/exploits/2018/04/26/nagios.html for
more information.
2018-04-26 17:42:10 -04:00
Brent Cook
4789cdc596
enable autofilter on tp-link camera exploit
2018-04-26 14:56:39 -05:00
Green-m
0286204b5d
Couchdb debug code
2018-04-12 03:54:02 -04:00
Green-m
054e525a61
Couchdb debug code
2018-04-12 03:51:37 -04:00
Green-m
3c5cbd2664
Use cmdstager method, update function to clean file, delete lots of useless code and etc.
2018-04-10 06:14:47 -04:00
Green-m
c0be313691
Update the get_version and check function
2018-04-09 00:07:58 -04:00
Green-m
6682acc4db
Pass range as parameter to rand_text_alpha_lower
2018-04-08 23:38:44 -04:00
Green-m
dabd9c8811
Improve function get_version and check
2018-04-08 07:51:37 -04:00
Green-m
fd83caf51d
use Gem::Version between
2018-04-08 02:23:45 -04:00
Green-m
076a73c2ee
use Gem::Version for version comparisons
2018-04-07 23:37:56 -04:00
Green-m
0d470f67ef
Run bash on the script directly.
2018-04-04 05:49:35 -04:00
Green-m
c53341f6c0
Fix msftidy problem.
2018-04-04 00:38:57 -04:00
Green-m
388927b933
Add advanced option Attempts to control exploit times
2018-04-04 00:08:32 -04:00
Green-m
2472bfdfdc
Fix rand_text_alpha_lower problem.
2018-04-03 23:05:08 -04:00
Green-m
bbf6d072ea
Fix some errors and bugs.
2018-04-03 22:47:41 -04:00
Green-m
611a3dc19c
Add exploit module apache_couchdb_cmd_exec
2018-03-27 05:43:03 -04:00
bwatters-r7
4b8a8fa2b1
Land #9441 , Create exploit for AsusWRT LAN RCE
...
Merge branch 'land-9441' into upstream-master
2018-02-22 10:40:45 -06:00
Pedro Ribeiro
54c6aa7629
Add full disclosure URL
2018-01-26 15:35:18 +07:00
bwatters-r7
685a950077
Land #9114 , Add module for Kaltura <= 13.1.0 RCE (CVE-2017-14143)
...
Merge branch 'land-9114' into upstream-master
2018-01-23 12:35:59 -06:00
Brent Cook
aae77fc1a4
Land #9349 , GoAhead LD_PRELOAD CGI Module
2018-01-22 23:10:36 -06:00
Pedro Ribeiro
621868b7fb
Add CVE numbers
2018-01-23 11:26:39 +07:00
Pedro Ribeiro
b734af4e79
Add my advisory URL
2018-01-22 22:00:48 +07:00
Pedro Ribeiro
c1fe355329
Create exploit for AsusWRT LAN RCE
2018-01-22 21:44:02 +07:00
Wei Chen
6510ee53bc
Land #9204 , Add exploit for Samsung SRN-1670D (CVE-2017-16524)
...
Land #9204
2018-01-10 20:15:29 -06:00
Wei Chen
18c179a091
Update module and add documentation
...
This updates the module to pass:
* msftidy
* Ruby style guidelines
* Proper usage of Metasploit API
* Mostly other cosmetic fixes
A documentation is also added.
2018-01-10 20:13:42 -06:00
William Vu
c3f10c1d57
Land #9336 , Linksys WVBR0-25 exploit
2018-01-03 18:13:44 -06:00
dmohanty-r7
a5fa63405f
Land #9206 , Add Xplico RCE exploit module
2018-01-03 16:02:51 -06:00
HD Moore
ece5528379
Small tweaks based on @bcoles feedback. Thanks!
2017-12-29 16:17:53 -06:00