William Vu
|
e010f48a3b
|
Move module to coldfusion_rds_auth_bypass
|
2019-10-27 11:25:56 -05:00 |
|
William Vu
|
2cc5f23915
|
Fix module title
|
2019-10-27 11:25:40 -05:00 |
|
Brendan Coles
|
a27af6b631
|
Add BSD Dump Password Hashes module
|
2019-10-27 06:46:31 +00:00 |
|
bwatters-r7
|
3483c50a86
|
Add Windows backup system sdclt uac bypass module
|
2019-10-25 15:01:56 -05:00 |
|
Wyatt Dahlenburg
|
d12fce600d
|
Use regex instead of splitting strings
|
2019-10-25 09:50:53 -05:00 |
|
William Vu
|
a0d1f02fd1
|
Fix failed login check for ColdFusion 9.something
It was merely "ColdFusion Administrator" for the version I tested.
|
2019-10-24 17:07:45 -05:00 |
|
Wyatt Dahlenburg
|
44181d3261
|
Patched up @bcoles suggestions
|
2019-10-24 14:04:21 -05:00 |
|
Wyatt Dahlenburg
|
0dd2ce9f45
|
Ignore keys that have passphrases
|
2019-10-23 23:11:13 -05:00 |
|
Shelby Pace
|
fcc9ad628c
|
Land #12473, add xscreensaver log privesc
|
2019-10-23 13:27:45 -05:00 |
|
Wei Chen
|
50baaf4d9c
|
Land #12464, Add ThinVNC Directory Traversal module
|
2019-10-23 12:39:20 -05:00 |
|
Wyatt Dahlenburg
|
32a5c68c6c
|
Migrated Post module to auxiliary to check from a local machine
|
2019-10-23 11:32:38 -05:00 |
|
Matteo Cantoni
|
77840a8830
|
Small changes to the host_header_injection aux module
|
2019-10-23 16:29:04 +02:00 |
|
Brendan Coles
|
991ccdbda5
|
Land #12106, Add Linux PTRACE_TRACEME local root exploit
|
2019-10-23 14:01:14 +00:00 |
|
Loïc Jaquemet
|
622846d682
|
Assign RPORT directly in report_cred
Assign RPORT directly in report_cred, do not use temp `port` var
|
2019-10-23 07:30:06 -06:00 |
|
Tim W
|
8c93b219d1
|
fix compile.rb and rubocop
|
2019-10-23 20:54:42 +08:00 |
|
Tim W
|
7ff71819e9
|
add architecture check to check method
|
2019-10-23 20:38:55 +08:00 |
|
Tim W
|
3b5d0b98e7
|
add a basic check method using loginctl
|
2019-10-23 19:50:19 +08:00 |
|
Tim W
|
7d25e321ef
|
add some more comments
|
2019-10-23 14:45:32 +08:00 |
|
Brendan Coles
|
ab9d1470d2
|
Use workaround for horrific command tokenisation
|
2019-10-23 06:37:30 +00:00 |
|
h00die
|
2d829f9d46
|
first upgrade on futex
|
2019-10-22 21:05:55 -04:00 |
|
Shelby Pace
|
e8469dca93
|
Land #11025, add Xorg SUID Modulepath Privesc
|
2019-10-22 14:11:00 -05:00 |
|
Loïc Jaquemet
|
f39a7f2a33
|
Remove space on empty line
Remove space on empty line
|
2019-10-22 12:14:03 -06:00 |
|
Loïc Jaquemet
|
22f9b4a732
|
define port from options
otherwise, L172 fails, as port (RPORT) is not defined
|
2019-10-22 11:57:02 -06:00 |
|
Shelby Pace
|
f4a54df262
|
change location of rescue, method name
|
2019-10-22 09:31:43 -05:00 |
|
Brendan Coles
|
39db3be145
|
Update tested versions
|
2019-10-22 06:35:57 +00:00 |
|
Shelby Pace
|
1fd09b6a81
|
add solaris targets and Metasm usage
|
2019-10-21 16:13:10 -05:00 |
|
William Vu
|
3565b0efb8
|
Land #12365, Total.js CMS widget creation RCE
|
2019-10-21 15:22:09 -05:00 |
|
Brent Cook
|
58b8990131
|
Land #12462, add post module to gather grub passwords
|
2019-10-21 12:35:52 -05:00 |
|
Quentin Kaiser
|
d76ea0ca59
|
Initial module version for Nostromo RCE (CVE-2019-16278).
|
2019-10-21 18:11:44 +02:00 |
|
bwatters-r7
|
eaa752454b
|
Land #12399, Add Urgent/11 vulnerability scanner
Merge branch 'land-12399' into upstream-master
|
2019-10-21 11:05:09 -05:00 |
|
Brent Cook
|
be57b284a9
|
split more neatly, support commas
|
2019-10-21 10:43:28 -05:00 |
|
Matteo Cantoni
|
4d7f29993a
|
Small changes to the brute_dirs aux module
|
2019-10-21 16:45:42 +02:00 |
|
Brendan Coles
|
84430c2a66
|
Add Solaris xscreensaver log Privilege Escalation module
|
2019-10-21 06:14:50 +00:00 |
|
Brent Cook
|
7cb683646f
|
remove unused RPORT
|
2019-10-20 21:40:05 -05:00 |
|
Brent Cook
|
def423c261
|
add RHOSTS support for multi-port
|
2019-10-20 21:37:55 -05:00 |
|
Brent Cook
|
b1942bb9ec
|
use probe socket for detection, pad TCP NOP explicitly
|
2019-10-20 21:31:33 -05:00 |
|
Brent Cook
|
f68e574795
|
close sockets, do preflight check to avoid F+
|
2019-10-20 20:26:16 -05:00 |
|
Brent Cook
|
d005c2d3ee
|
malform packets more (once more with feeling), add report mixin for reporting
|
2019-10-20 20:00:56 -05:00 |
|
William Vu
|
b870cadb0f
|
Reregister INTERFACE datastore option
In case configuration failed.
|
2019-10-18 12:08:45 -05:00 |
|
William Vu
|
3d08f7c746
|
Update DisclosureDate comment
|
2019-10-18 12:07:28 -05:00 |
|
William Vu
|
3c74bdd7ee
|
Add CRASH_SAFE module trait to notes
|
2019-10-18 12:01:27 -05:00 |
|
RAMELLA Sébastien
|
25f60b07ed
|
compliance for the framework
|
2019-10-18 15:51:58 +04:00 |
|
dwelch-r7
|
9ad5e353fe
|
Use latest framework version
|
2019-10-18 12:21:33 +01:00 |
|
Tim W
|
37011c5ec0
|
update author and add documentation
|
2019-10-17 22:28:17 +08:00 |
|
Francesco Soncina
|
e992480b5c
|
Update shellcode_inject.rb
|
2019-10-17 16:02:59 +02:00 |
|
Brendan Coles
|
43c980ed29
|
Add ThinVNC Directory Traversal module
|
2019-10-17 07:44:19 +00:00 |
|
Taeber Rapczak
|
1c9a3c74d5
|
Add post module to collect grub passwords
closes #11166
|
2019-10-16 00:45:33 -04:00 |
|
Wei Chen
|
0ebc971d29
|
Use CmdStager mixin
|
2019-10-15 14:00:58 -05:00 |
|
bwatters-r7
|
f5bb6f8ca2
|
Land #12428, Extend check codes with custom messages
Merge branch 'land-12428' into upstream-master
|
2019-10-15 11:06:33 -05:00 |
|
Wei Chen
|
bb7c42b2ce
|
Arch and disclosure date
|
2019-10-15 10:25:20 -05:00 |
|