phra
|
3a865a0c05
|
feat: spawn as NT AUTHORITY\SYSTEM
|
2019-01-12 04:03:26 +01:00 |
|
William Vu
|
e9a8d5708a
|
Land #11234, @bcoles revisionism
|
2019-01-11 20:15:34 -06:00 |
|
Brendan Coles
|
fe6956d7f7
|
Use mixins
|
2019-01-11 22:46:58 +00:00 |
|
Brendan Coles
|
20fd6b6134
|
Add check for writable and nosuid WritableDir
|
2019-01-11 22:41:14 +00:00 |
|
phra
|
149f895329
|
feat: add LOGFILE support for debug
|
2019-01-11 18:21:54 +01:00 |
|
phra
|
dca99552e6
|
feat: pass payload length to the dll
|
2019-01-11 16:28:49 +01:00 |
|
phra
|
7653d64c4a
|
fix: improve exploit check
|
2019-01-11 15:38:57 +01:00 |
|
Brendan Coles
|
24f807490f
|
revisionism
|
2019-01-10 19:19:14 +00:00 |
|
Brent Cook
|
9f8bac59f7
|
Land #11215, success
|
2019-01-10 12:57:46 -06:00 |
|
sinn3r
|
74330f87dc
|
Land #11223 - ueb priv esc suggestion
ueb priv esc suggestion.
|
2019-01-10 10:35:28 -06:00 |
|
phra
|
dc2d3c5774
|
feat: add juicy potato post module, fixes #11229
|
2019-01-10 17:20:43 +01:00 |
|
Jacob Robles
|
2f939481e7
|
Land #11206, add coldfusion ckeditor file upload
|
2019-01-10 07:27:38 -06:00 |
|
Jacob Robles
|
b81f59e7b1
|
Fix targets and syntax changes
|
2019-01-10 06:39:45 -06:00 |
|
rsp3ar
|
71aa4c8d9e
|
Adding respond code/body check for successful command execution
|
2019-01-10 00:01:19 -08:00 |
|
rsp3ar
|
3aabeee959
|
Update SSL, timeout and uid regex
|
2019-01-09 23:20:37 -08:00 |
|
Brendan Coles
|
5a956bb27b
|
Apply suggestions from code review
Co-Authored-By: rsp3ar <rsp3ar@users.noreply.github.com>
|
2019-01-09 21:07:01 -08:00 |
|
h00die
|
799a79b715
|
ueb priv esc suggestion
|
2019-01-09 20:28:53 -05:00 |
|
Jacob Robles
|
0c984fa232
|
Fix messages /successfuly/successfully
|
2019-01-09 06:32:22 -06:00 |
|
rsp3ar
|
24de5d6ee3
|
Update to use CmdStager
|
2019-01-08 20:07:35 -08:00 |
|
Jacob Robles
|
16b8cf7059
|
Land #11148, Adding Module MailCleaner RCE
|
2019-01-08 14:10:31 -06:00 |
|
Jacob Robles
|
a0acfa79d7
|
Target payloads
|
2019-01-08 13:27:26 -06:00 |
|
rsp3ar
|
bab651e94d
|
Add Imperva SecureSphere module
|
2019-01-07 22:18:04 -08:00 |
|
Qazeer
|
a63c057c3a
|
Integrate bcoles' comments (filename generation, conditional block improvement, etc.)
|
2019-01-06 22:50:46 +01:00 |
|
Brendan Coles
|
0a5957c36f
|
Add Linux support to multi/script/web_delivery
|
2019-01-06 19:40:30 +00:00 |
|
Qazeer
|
c03466d2f2
|
Fixed date format issue and added Bugtraq ID
|
2019-01-06 14:34:40 +01:00 |
|
Qazeer
|
4644ad8966
|
Add CVE-2018-15961 Adobe ColdFusion CKEditor unrestricted file upload
|
2019-01-06 04:55:20 +01:00 |
|
Shelby Pace
|
29e7c49332
|
Land #10444, add Consul rexec RCE module
|
2018-12-28 09:14:28 -06:00 |
|
Shelby Pace
|
fb8f06b2f5
|
Land #10443, add Consul service RCE module
|
2018-12-28 08:33:56 -06:00 |
|
Mehmet İnce
|
4e8ad22a7a
|
Adding CVE number
|
2018-12-26 13:15:36 +03:00 |
|
Mehmet İnce
|
fa542b9691
|
Adding platform and arch to top level
|
2018-12-25 15:56:25 +03:00 |
|
Quentin Kaiser
|
18c844623a
|
Remove extra spaces.
|
2018-12-24 13:48:07 +01:00 |
|
Quentin Kaiser
|
e10792f4e6
|
Remove extra space.
|
2018-12-24 13:30:03 +01:00 |
|
Brendan Coles
|
98dc59728e
|
Add blueman set_dhcp_handler D-Bus Privilege Escalation
|
2018-12-24 08:03:55 +00:00 |
|
Brent Cook
|
b9742802aa
|
Land #11137, Clean up linux/local/vmware_alsa_config exploit module
|
2018-12-21 17:04:11 -06:00 |
|
Brendan Coles
|
983b39a5b3
|
Use @iZsh's exploit
|
2018-12-21 15:40:01 +00:00 |
|
Jacob Robles
|
4bc871c499
|
Add CmdStager to erlang_cookie_rce
|
2018-12-21 07:33:37 -06:00 |
|
Brent Cook
|
c959c98161
|
add original public research author
|
2018-12-21 02:54:35 -06:00 |
|
Brent Cook
|
a7e8afe760
|
update references, remove unused metadata, use more straightforward string operations
|
2018-12-21 02:54:35 -06:00 |
|
Brent Cook
|
0dab74a71f
|
tweak description
|
2018-12-21 02:54:35 -06:00 |
|
Brent Cook
|
46acd7a206
|
simplify
|
2018-12-21 02:54:35 -06:00 |
|
Brent Cook
|
2f35695327
|
update web link
|
2018-12-21 02:54:35 -06:00 |
|
Brent Cook
|
ac51fbd122
|
style fixes
|
2018-12-21 02:54:35 -06:00 |
|
Brent Cook
|
dc6ae6f058
|
initial import, CVE-2016-4117 OSX exploit
|
2018-12-21 02:54:35 -06:00 |
|
Quentin Kaiser
|
bf2de42077
|
Now supports all version of Consul.
|
2018-12-20 18:56:07 +01:00 |
|
Quentin Kaiser
|
2919b970cd
|
Implement execution checks with a timeout limit so we don't leave zombie checks running in background.
|
2018-12-20 18:41:35 +01:00 |
|
Quentin Kaiser
|
ba5c40db77
|
No need for CVE field.
|
2018-12-20 18:18:53 +01:00 |
|
Mehmet İnce
|
9481ad04f2
|
Adding support for ARCH_CMD and updating docs
|
2018-12-20 12:12:01 +03:00 |
|
Mehmet İnce
|
68ceb08957
|
Fixing minor issues such as err codes
|
2018-12-19 22:17:34 +03:00 |
|
Mehmet İnce
|
e5c8c18ded
|
Adding Mailcleaner exec
|
2018-12-19 17:35:40 +03:00 |
|
Jacob Robles
|
6921b79890
|
Land #11089, Erlang cookie rce exploit module
|
2018-12-19 08:02:40 -06:00 |
|