stevenseeley
|
5ff8394df0
|
@bcoles is a purist :p
|
2019-05-09 22:21:26 -05:00 |
|
stevenseeley
|
7953f85c16
|
updated error message to be NoAccess
|
2019-05-09 21:29:48 -05:00 |
|
stevenseeley
|
a700fcec5d
|
changed regex as suggested by @bcoles
|
2019-05-09 21:18:14 -05:00 |
|
stevenseeley
|
e769ae5c90
|
fixed some error conditions, changed regex as suggested by @bcoles
|
2019-05-09 21:14:54 -05:00 |
|
stevenseeley
|
2ff1adb1be
|
fixed timing of exec
|
2019-05-09 20:58:14 -05:00 |
|
stevenseeley
|
6ffd1d5e95
|
updated module to address @bcoles's comments
|
2019-05-09 20:53:49 -05:00 |
|
stevenseeley
|
65c3163518
|
updated module credits with original discoverer
|
2019-05-09 17:35:47 -05:00 |
|
stevenseeley
|
ba2baa7652
|
updated module randomization a little more
|
2019-05-09 16:14:35 -05:00 |
|
stevenseeley
|
2649fa0d65
|
added a new line at the end
|
2019-05-09 15:35:00 -05:00 |
|
stevenseeley
|
9b200840a4
|
added module for CVE-2017-18357
|
2019-05-09 15:19:01 -05:00 |
|
stevenseeley
|
aaa0dd2532
|
added module for CVE-2017-18357
|
2019-05-09 15:17:43 -05:00 |
|
stevenseeley
|
89e3a07518
|
added module for CVE-2017-18357
|
2019-05-09 15:08:33 -05:00 |
|
Wei Chen
|
310d931bf5
|
Land #11816, Add CVE-2019-5786 : Chrome 72.0.3626.119 on Windows 7 x86
|
2019-05-08 11:21:40 -05:00 |
|
Wei Chen
|
923d8b8b2e
|
Fix uri with get_resource
|
2019-05-08 11:20:36 -05:00 |
|
Tim W
|
7968bd932a
|
improve arch selection
|
2019-05-07 22:54:58 +08:00 |
|
William Vu
|
413929b7f6
|
Land #11598, Postgres COPY FROM PROGRAM exploit
|
2019-05-07 01:12:44 -05:00 |
|
asoto-r7
|
f89b0e848f
|
Land PR#11780, exploit/multi/misc/weblogic_deserialize_asyncresponseservice
|
2019-05-06 15:36:47 -05:00 |
|
Tim W
|
be1d185a04
|
Add CVE-2019-8565 OSX Feedback Assistant local root exploit
|
2019-05-07 04:30:47 +08:00 |
|
asoto-r7
|
abfe4fd2c2
|
weblogic_deserialize_asyncresponseservice: Added check method, improved exception handling, minimizing XML strings
|
2019-05-06 15:16:50 -05:00 |
|
Tim W
|
39969e71fa
|
Initial commit of CVE-2019-5786
|
2019-05-06 17:05:00 +08:00 |
|
Cha0s
|
bd349b8a23
|
Removed Spaces EOL
|
2019-05-04 23:24:20 -05:00 |
|
Cha0s
|
4bf0adeade
|
Module corrections
Corrections in: author metadata, references, removing handler, removing unused code branch and vulnerable variable, improve module description
|
2019-05-04 23:11:40 -05:00 |
|
Brendan Coles
|
60fb3b2319
|
Add BSD target to exploit/multi/ssh/sshexec module
|
2019-05-02 20:40:14 +00:00 |
|
Waqas Ali
|
48b7f7c904
|
Update (removed parenthesis) modules/exploits/multi/http/getsimplecms_unauth_code_exec.rb
(removed parenthesis)
Co-Authored-By: truerandom <masterofdisaster@ciencias.unam.mx>
|
2019-05-02 02:03:54 -05:00 |
|
Waqas Ali
|
75c78b761e
|
Update (removed parenthesis) modules/exploits/multi/http/getsimplecms_unauth_code_exec.rb
(removed parenthesis)
Co-Authored-By: truerandom <masterofdisaster@ciencias.unam.mx>
|
2019-05-02 02:03:46 -05:00 |
|
Waqas Ali
|
3a7ebbdc3d
|
Update (removed parenthesis) modules/exploits/multi/http/getsimplecms_unauth_code_exec.rb
(removed parenthesis)
Co-Authored-By: truerandom <masterofdisaster@ciencias.unam.mx>
|
2019-05-02 02:03:26 -05:00 |
|
Waqas Ali
|
33c2a9592a
|
Update (removed parenthesis) modules/exploits/multi/http/getsimplecms_unauth_code_exec.rb
(removed parenthesis)
Co-Authored-By: truerandom <masterofdisaster@ciencias.unam.mx>
|
2019-05-02 02:03:14 -05:00 |
|
truerandom
|
ea3e8e5bae
|
exploit module for cve-2019-11231
|
2019-05-01 20:05:57 -04:00 |
|
Shelby Pace
|
a88858fc8b
|
Land #11779, add Rails Doubletap Dev mode RCE
|
2019-05-01 08:35:28 -05:00 |
|
Andrés Rodríguez
|
d1ca87b810
|
Improvements to the payloads config.
|
2019-05-01 00:06:46 -05:00 |
|
Andrés Rodríguez
|
4c612efc16
|
Spaces at EOL (again).
|
2019-04-30 23:36:52 -05:00 |
|
Andrés Rodríguez
|
384c8b3959
|
Pulling the XML out into its own method.
|
2019-04-30 23:23:38 -05:00 |
|
Andrés Rodríguez
|
554f781382
|
Spaces at EOL.
|
2019-04-30 23:03:25 -05:00 |
|
Andrés Rodríguez
|
b3a4b639c3
|
Use of suggested multi-line string for XML and case for the OS.
|
2019-04-30 22:43:45 -05:00 |
|
Andrés Rodríguez
|
ce25253e5a
|
Some suggested fixes.
|
2019-04-30 21:36:51 -05:00 |
|
Brendan Coles
|
f11ce8635f
|
Add ptrace Sudo Token Privilege Escalation module
|
2019-04-30 21:54:18 +00:00 |
|
Wei Chen
|
1fd54e20fb
|
Update target name
|
2019-04-30 10:13:01 -05:00 |
|
Wei Chen
|
29344d15b6
|
Update rails_double_tap doc and module based on bcole feedback
|
2019-04-30 10:11:32 -05:00 |
|
Jacob Robles
|
6c29da6e8e
|
Land #11673, Add yum persistence module
|
2019-04-30 06:49:43 -05:00 |
|
Jacob Robles
|
e5cb003c5c
|
Remove trailing whitespace
|
2019-04-30 06:25:48 -05:00 |
|
arntsonl
|
f200c12424
|
Postgres 8.2+ update to postgres_payload.rb module
|
2019-04-29 15:28:11 -04:00 |
|
Wei Chen
|
6668b226ba
|
Land #11761, Cleanup apport_abrt_chroot_priv_esc
|
2019-04-29 14:04:24 -05:00 |
|
Jacob Robles
|
68ffdf0ddc
|
Land #11641, Add AIS RCE
|
2019-04-29 13:52:58 -05:00 |
|
Wei Chen
|
88f7ed25e3
|
Land #11784, Fix NoMethodError in jira_plugin_upload exploit module
|
2019-04-29 10:59:41 -05:00 |
|
Shelby Pace
|
10e141c73d
|
Land #11697, add Pimcore unserialize RCE
|
2019-04-29 08:52:49 -05:00 |
|
Shelby Pace
|
d5f76f328a
|
removed version from module title
|
2019-04-29 08:43:33 -05:00 |
|
Jacob Robles
|
147b9fef98
|
Land #11665, Add APT persistence module
|
2019-04-27 12:32:21 -05:00 |
|
Shelby Pace
|
31f4c842a6
|
added a few checks
|
2019-04-26 16:18:14 -05:00 |
|
Jacob Robles
|
1faa41aafe
|
Dont require hook name
|
2019-04-26 13:11:40 -05:00 |
|
Wei Chen
|
2141036f13
|
Remove the extra newline
|
2019-04-26 12:59:50 -05:00 |
|