Brendan Coles
|
3e7857d146
|
Add reliability and stability notes to ms06_040_netapi
|
2019-12-03 06:32:02 +00:00 |
|
Shelby Pace
|
f3922d73d8
|
use encode, replace double quotes
|
2019-12-02 15:25:52 -06:00 |
|
dwelch-r7
|
41569b78ba
|
Land #12503, Add exploit module for Ajenti 2.1.31
|
2019-12-01 16:13:06 +00:00 |
|
dwelch-r7
|
ed94499ea6
|
Land #12422, Add module for enumerating git keys
|
2019-12-01 15:39:54 +00:00 |
|
Brendan Coles
|
ba05e91d19
|
Add Reliability notes
|
2019-11-30 06:28:12 +00:00 |
|
Brendan Coles
|
a6723c12fb
|
Add stability notes to ms04_007_killbill
|
2019-11-30 06:16:41 +00:00 |
|
h00die
|
da506c9684
|
dont load examples and syntax fixes
|
2019-11-29 09:11:44 -05:00 |
|
h00die
|
f17fe39bda
|
dos iis75 nocrash
|
2019-11-29 07:15:17 -05:00 |
|
h00die
|
bad8e24e48
|
additional example exploits
|
2019-11-29 06:54:34 -05:00 |
|
Christophe De La Fuente
|
373d147efd
|
Land #12555 - Wordpress Plainview Activity Monitor RCE
|
2019-11-29 11:10:24 +01:00 |
|
leo-lb
|
1cf9a2eb53
|
Update wp_plainview_activity_monitor_rce.rb
|
2019-11-28 20:13:21 +01:00 |
|
leo-lb
|
2372f7e40d
|
Update wp_plainview_activity_monitor_rce.rb
|
2019-11-28 20:10:17 +01:00 |
|
leo-lb
|
853fea736d
|
Update wp_plainview_activity_monitor_rce.rb
|
2019-11-27 22:28:33 +01:00 |
|
leo-lb
|
60b98fd20c
|
Update wp_plainview_activity_monitor_rce.rb
|
2019-11-27 21:59:54 +01:00 |
|
leo-lb
|
9b5265f49a
|
Update wp_plainview_activity_monitor_rce.rb
|
2019-11-27 21:57:24 +01:00 |
|
Wyatt Dahlenburg
|
02bb97fba6
|
Forced gitserver to required and improved status messages
|
2019-11-27 11:18:01 -06:00 |
|
Francesco Soncina
|
45bee2d500
|
Update splunk_upload_app_exec.rb
|
2019-11-26 15:38:34 +01:00 |
|
William Vu
|
b22d2a1685
|
Update prints in DOUBLEPULSAR exploit check method
vprint_good should be print_warning, and most vprints should be print,
even if in check, since check is critical functionality.
|
2019-11-25 18:33:46 -06:00 |
|
dwelch-r7
|
a8847a1d2a
|
Land #12475, enhancements to brute_dirs module
|
2019-11-25 19:04:30 +00:00 |
|
Christophe De La Fuente
|
cd22c1bea4
|
Minor fixes for OPTIONS
- Remove TIMEOUT option since it is already present in the advanced
options (HttpClientTimeout)
- Add DATA option to set the POST data
|
2019-11-22 15:09:08 +01:00 |
|
RAMELLA Sébastien
|
6e93df1224
|
fix. DisablePayloadHandler to false in target 0 and add unknown author.
|
2019-11-22 17:56:50 +04:00 |
|
Jeffrey Martin
|
8d057518ce
|
add jjs payload tests and set cached sizes
|
2019-11-21 16:38:18 -06:00 |
|
Shelby Pace
|
e6e1156185
|
add reference, description, etc.
|
2019-11-21 14:15:25 -06:00 |
|
Brent Cook
|
f8c84c9928
|
Land #12530, add encrypted, compilable shell payloads
|
2019-11-21 08:59:46 -06:00 |
|
Brent Cook
|
51f26a91c0
|
rename singles to match staged payloads
|
2019-11-21 05:19:39 -06:00 |
|
MangyCoyote
|
a7e7b9dbf2
|
post/multi/gather/ssh_creds should verify it has access to a file before reading it
|
2019-11-21 10:48:42 +01:00 |
|
Shelby Pace
|
a4657da33a
|
code execution with Java 8
|
2019-11-20 15:29:33 -06:00 |
|
bwatters-r7
|
c841306cb0
|
Land #12544, Add bind/reverse jjs unix cmd payloads
Merge branch 'land-12544' into upstream-master
|
2019-11-20 14:14:11 -06:00 |
|
Onur ER
|
fa1647190e
|
Update ajenti_auth_username_cmd_injection.rb
|
2019-11-20 19:09:24 +03:00 |
|
Onur ER
|
841e524b6f
|
Update modules/exploits/unix/webapp/ajenti_auth_username_cmd_injection.rb
Co-Authored-By: bcoles <bcoles@gmail.com>
|
2019-11-20 18:08:33 +03:00 |
|
Onur ER
|
af59efa4cd
|
Update modules/exploits/unix/webapp/ajenti_auth_username_cmd_injection.rb
Co-Authored-By: bcoles <bcoles@gmail.com>
|
2019-11-20 18:08:23 +03:00 |
|
Tim W
|
b63fd963aa
|
default AMSI bypass off except for web_delivery
|
2019-11-19 22:26:40 +08:00 |
|
Federico Pellegrin
|
b81545acee
|
scanners: fix a couple of typos
|
2019-11-19 10:15:46 +01:00 |
|
Tim W
|
6fa16c7020
|
Land #12593, fix android hashdump hash format
|
2019-11-19 13:37:16 +08:00 |
|
Brent Cook
|
42a06583b8
|
Land #12601, don't store public-only ssh creds
|
2019-11-18 17:37:19 -06:00 |
|
Brent Cook
|
23f66f85eb
|
Land #12479, fix error running sap_mgmt_con_brute_login
|
2019-11-18 17:12:46 -06:00 |
|
Brent Cook
|
ccff82f818
|
Land #12589, restrict windows/local/persistence_service to working session types
|
2019-11-18 15:15:50 -06:00 |
|
MangyCoyote
|
cfd86f6412
|
ssh_creds module tries to store ssh public keys (#1)
Resolves #12599
|
2019-11-18 21:28:47 +01:00 |
|
Brent Cook
|
73950eef50
|
Land #12516, Add Windows Escalate UAC Protection Bypass
|
2019-11-18 14:25:07 -06:00 |
|
Brent Cook
|
5936d2c415
|
use a finer-grained exception here
|
2019-11-18 12:57:33 -06:00 |
|
bwatters-r7
|
2736cbc84c
|
Land #12588, Remove unsupported session type
Merge branch 'land-12588' into upstream-master
|
2019-11-18 10:19:01 -06:00 |
|
Shelby Pace
|
3fa9e9b0a8
|
add Dependencies array with mingw arch class
|
2019-11-18 09:35:18 -06:00 |
|
Brent Cook
|
41161ba917
|
Land #12585, use post API for shell compat in enum_hostfile
|
2019-11-18 02:09:09 -06:00 |
|
Brent Cook
|
5a6e4c031d
|
Land #12494, Add Windows backup system sdclt uac bypass module
|
2019-11-18 01:47:11 -06:00 |
|
Brent Cook
|
09730aebf4
|
s/http/https/
|
2019-11-18 01:45:57 -06:00 |
|
h00die
|
a0e45f4841
|
fixes for android hashdump
|
2019-11-17 13:44:19 -05:00 |
|
Brendan Coles
|
facf16b860
|
Declare correct SessionType - Fix #12586
|
2019-11-16 04:58:02 +00:00 |
|
Brendan Coles
|
9e37fb3ece
|
Declare correct SessionType - Fix #12587
|
2019-11-16 04:57:18 +00:00 |
|
Brendan Coles
|
f5fbdcacc3
|
Add support for shell sessions to post/windows/gather/enum_hostfile
|
2019-11-16 04:07:01 +00:00 |
|
bwatters-r7
|
d093c75ae5
|
Stupid pry....
|
2019-11-15 12:27:42 -06:00 |
|