Waqas Ali
|
33c2a9592a
|
Update (removed parenthesis) modules/exploits/multi/http/getsimplecms_unauth_code_exec.rb
(removed parenthesis)
Co-Authored-By: truerandom <masterofdisaster@ciencias.unam.mx>
|
2019-05-02 02:03:14 -05:00 |
|
truerandom
|
ea3e8e5bae
|
exploit module for cve-2019-11231
|
2019-05-01 20:05:57 -04:00 |
|
Shelby Pace
|
a88858fc8b
|
Land #11779, add Rails Doubletap Dev mode RCE
|
2019-05-01 08:35:28 -05:00 |
|
Andrés Rodríguez
|
d1ca87b810
|
Improvements to the payloads config.
|
2019-05-01 00:06:46 -05:00 |
|
Andrés Rodríguez
|
4c612efc16
|
Spaces at EOL (again).
|
2019-04-30 23:36:52 -05:00 |
|
Andrés Rodríguez
|
384c8b3959
|
Pulling the XML out into its own method.
|
2019-04-30 23:23:38 -05:00 |
|
Andrés Rodríguez
|
554f781382
|
Spaces at EOL.
|
2019-04-30 23:03:25 -05:00 |
|
Andrés Rodríguez
|
b3a4b639c3
|
Use of suggested multi-line string for XML and case for the OS.
|
2019-04-30 22:43:45 -05:00 |
|
Andrés Rodríguez
|
ce25253e5a
|
Some suggested fixes.
|
2019-04-30 21:36:51 -05:00 |
|
Wei Chen
|
1fd54e20fb
|
Update target name
|
2019-04-30 10:13:01 -05:00 |
|
Wei Chen
|
29344d15b6
|
Update rails_double_tap doc and module based on bcole feedback
|
2019-04-30 10:11:32 -05:00 |
|
Wei Chen
|
88f7ed25e3
|
Land #11784, Fix NoMethodError in jira_plugin_upload exploit module
|
2019-04-29 10:59:41 -05:00 |
|
Shelby Pace
|
10e141c73d
|
Land #11697, add Pimcore unserialize RCE
|
2019-04-29 08:52:49 -05:00 |
|
Shelby Pace
|
d5f76f328a
|
removed version from module title
|
2019-04-29 08:43:33 -05:00 |
|
Shelby Pace
|
31f4c842a6
|
added a few checks
|
2019-04-26 16:18:14 -05:00 |
|
Wei Chen
|
2141036f13
|
Remove the extra newline
|
2019-04-26 12:59:50 -05:00 |
|
Fabio Cogno
|
e9e50b2ae3
|
Refactoring - login function
|
2019-04-26 19:53:54 +02:00 |
|
Shelby Pace
|
3de617fea5
|
add checks for xsrf_token
|
2019-04-26 11:09:33 -05:00 |
|
bcoles
|
80b066ad03
|
Forgotten string interpolation..
Co-Authored-By: acamro <acamro@users.noreply.github.com>
|
2019-04-25 21:56:42 -05:00 |
|
Andres Rodriguez
|
6cdfde7268
|
Some fixes for char escapes...
|
2019-04-25 19:32:17 -07:00 |
|
Andrés Rodríguez
|
64491ef690
|
Remove file bad chars...
|
2019-04-25 20:52:11 -05:00 |
|
Andres Rodriguez
|
9a4717f1af
|
Weblogic deserialize AsyncResponseService module
|
2019-04-25 18:03:17 -07:00 |
|
Wei Chen
|
cc9216d848
|
Clean up the extra space
|
2019-04-25 16:39:40 -05:00 |
|
Wei Chen
|
9a40f24c46
|
Add CVE-2019-5420 : Ruby on Rails DoubleTap secret_key_base Vuln
|
2019-04-25 14:30:46 -05:00 |
|
Brent Cook
|
470255cb2b
|
Land #11769, make sure Notes fields show up in info
|
2019-04-24 13:01:07 -05:00 |
|
William Vu
|
94994aa519
|
Update modules with RelatedModules and realign
|
2019-04-24 11:34:42 -05:00 |
|
William Vu
|
30b8625885
|
Update Ghostscript/ImageMagick modules
|
2019-04-23 16:31:40 -05:00 |
|
Brendan Coles
|
163c66b5ba
|
Update tested versions
|
2019-04-21 11:21:28 +00:00 |
|
Adam Cammack
|
f14571364f
|
Properly encode URL
|
2019-04-19 12:35:36 -05:00 |
|
asoto-r7
|
1ecb309633
|
Land #11717, exploit/multi/http/confluence_widget_connector
|
2019-04-18 12:14:09 -05:00 |
|
asoto-r7
|
a84aa4e148
|
Adjusted imeout for the final POST, abort cleanly on failure
|
2019-04-18 11:57:23 -05:00 |
|
Shelby Pace
|
392078990c
|
added x64 arch for targets
|
2019-04-17 08:29:58 -05:00 |
|
William Vu
|
c03ee656a3
|
Merge remote-tracking branch 'upstream/master' into HEAD
|
2019-04-16 16:02:11 -05:00 |
|
asoto-r7
|
06792f7cd4
|
Moved documentation to 'documentation' folder
|
2019-04-16 14:16:52 -05:00 |
|
asoto-r7
|
0aaae062a4
|
Updated RPORT to 8090, reduced timeout of final exec.vm request to 5 sec
|
2019-04-16 14:13:35 -05:00 |
|
asoto-r7
|
8b61c5edf5
|
Fixed target_platform_compat to support 'Windows 10', made debugging easier
|
2019-04-16 13:18:00 -05:00 |
|
Shelby Pace
|
8dc8a18d2b
|
added documentation and changes for module
|
2019-04-15 08:26:11 -05:00 |
|
Fabio Cogno
|
deaa66d694
|
Minor update
|
2019-04-15 00:08:10 +02:00 |
|
bcoles
|
6f92b98ba2
|
Update modules/exploits/multi/postgres/postgres_copy_from_program_cmd_exec.rb
Co-Authored-By: Greenwolf <48361984+Greenwolf@users.noreply.github.com>
|
2019-04-12 21:25:13 +01:00 |
|
rrockru
|
2c3aec897f
|
Refactoring
|
2019-04-12 22:06:56 +03:00 |
|
Shelby Pace
|
391e7cf8ef
|
adjusted font size and color
|
2019-04-12 14:01:29 -05:00 |
|
Shelby Pace
|
d7f77fdcee
|
getting session on linux
|
2019-04-12 14:01:29 -05:00 |
|
Shelby Pace
|
700562594c
|
getting session on windows
|
2019-04-12 14:01:29 -05:00 |
|
Shelby Pace
|
4873b7c3e6
|
using a path for both Windows and Linux
|
2019-04-12 14:01:29 -05:00 |
|
Shelby Pace
|
9d0c045b0d
|
added erb file and base for module
|
2019-04-12 14:01:29 -05:00 |
|
rrockru
|
8f3bb045b9
|
Refactoring
|
2019-04-12 22:00:23 +03:00 |
|
bcoles
|
2c3464c93a
|
Update modules/exploits/multi/postgres/postgres_copy_from_program_cmd_exec.rb
Co-Authored-By: Greenwolf <48361984+Greenwolf@users.noreply.github.com>
|
2019-04-12 17:49:20 +01:00 |
|
Jacob
|
4989498722
|
Update postgres_copy_from_program_cmd_exec.rb
|
2019-04-12 17:48:32 +01:00 |
|
bcoles
|
755da3482e
|
Update modules/exploits/multi/postgres/postgres_copy_from_program_cmd_exec.rb
Co-Authored-By: Greenwolf <48361984+Greenwolf@users.noreply.github.com>
|
2019-04-12 17:43:19 +01:00 |
|
bcoles
|
7daa52af4f
|
Update modules/exploits/multi/postgres/postgres_copy_from_program_cmd_exec.rb
Co-Authored-By: Greenwolf <48361984+Greenwolf@users.noreply.github.com>
|
2019-04-12 17:42:51 +01:00 |
|