William Vu
bb5ce078f3
Fix style
2019-05-21 01:23:26 -05:00
rwincey
99f3f6cb78
Added x64 arch and fixed exe gen
2019-05-20 23:45:26 -04:00
Metasploit
14fb26a528
automatic module_metadata_base.json update
2019-05-20 12:26:12 -07:00
Shelby Pace
0d6008862b
Land #11805 , add bsd targets to sshexec
2019-05-20 14:16:10 -05:00
Thom Morgan
7325ea669f
Update pipe_auditor.rb
2019-05-20 14:35:32 -04:00
Shelby Pace
6633bfc28e
Land #11808 , add FreeBSD rtld privesc
2019-05-20 13:30:12 -05:00
NoodleOfDeath
5f889919b4
Added a wordlist of 1491 WordPress plugins that can be enumerated in the wp/wp-content/plugins directory
2019-05-20 14:30:02 -04:00
Metasploit
3019623369
automatic module_metadata_base.json update
2019-05-20 11:21:12 -07:00
Wei Chen
7986706f83
Update markdown description for the right CVE
2019-05-20 13:14:56 -05:00
Wei Chen
6847fcc199
Update CVE reference and datastore options for WebLogic exploit
2019-05-20 13:10:06 -05:00
bwatters-r7
966582a10c
Land #11833 , moodle_cmd_exec nil check
...
Merge branch 'land-11833' into upstream-master
2019-05-20 13:08:11 -05:00
Brendan Coles
b76507f1f3
Add FreeBSD rtld execl() Privilege Escalation module
2019-05-20 13:03:20 -05:00
Thom Morgan
4d9ae525c2
Update lib/msf/core/exploit/smb/client/pipe_auditor.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-05-20 13:58:22 -04:00
Wei Chen
cb1333de45
Land #11818 , Add CVE-2019-8565 OSX Feedback Assistant local root exploit
2019-05-20 12:51:42 -05:00
Wei Chen
701e52b51b
Add some kind of documentation for feedback_assistant_root
2019-05-20 12:49:24 -05:00
NoodleOfDeath
f656638f94
smb client now preprends named pipes with missing backslash during check named pipes enumeration
2019-05-20 13:47:18 -04:00
Wei Chen
efa00cd2d0
Update module description
2019-05-20 12:43:54 -05:00
William Vu
581b20794c
Land #11859 , struts2_rest_xstream style fix
2019-05-20 12:39:48 -05:00
Wei Chen
40bc0770f3
Update title
2019-05-20 12:37:46 -05:00
Wei Chen
eaaf1dd6c0
Update session types and platform metadata
2019-05-20 12:36:43 -05:00
William Vu
0328814241
Indent ternary statement in struts2_rest_xstream
2019-05-20 12:35:52 -05:00
bwatters-r7
e1f898fe52
Land #11834 , Fix ams_hndlrsvc
...
Merge branch 'land-11834' into upstream-master
2019-05-20 12:29:45 -05:00
Wei Chen
6cd943e0ce
Sometimes attributes could be nil if hitting an unexpected page
2019-05-20 10:48:29 -05:00
Brendan Coles
652fc1340e
Add cmd/unix/reverse_bash_udp payload
2019-05-20 07:57:01 +00:00
Wei Chen
5a46fdf535
Find frsc value from hidden input instead of using rkelly (js)
2019-05-18 19:25:44 -05:00
Wei Chen
592b8302ab
Make sure to calls super for setup, also update doc for output
2019-05-18 18:08:25 -05:00
Wei Chen
c2567f2ee3
Fix bug on cleanup ready status & more verbose
2019-05-18 17:50:29 -05:00
Metasploit
4d26f9fe47
automatic module_metadata_base.json update
2019-05-17 16:32:16 -07:00
Wei Chen
ad08c4e56b
Land #11828 , Add CVE-2017-18357: Shopware Object Instantiation
2019-05-17 18:22:48 -05:00
Wei Chen
9b46e7a347
Normalize PHP payload path
2019-05-17 18:20:59 -05:00
Metasploit
0e2837feb5
automatic module_metadata_base.json update
2019-05-17 03:32:31 -07:00
Brent Cook
930952e994
Land #11374 , add super-small version of bind tcp random payload
2019-05-17 03:13:40 -07:00
Brent Cook
9ae01c98c9
merge super-tiny payload into tiny payload, invoke on available size
2019-05-17 03:12:01 -07:00
thesubtlety
4f679fad7a
fix key material loading and display of blank api keys
2019-05-16 19:31:11 -07:00
Wei Chen
40d4b3dfd3
Add doc and update the module title
2019-05-16 16:31:25 -05:00
Wei Chen
39b8dce342
Update the description
2019-05-16 16:25:23 -05:00
Wei Chen
27554cf19a
Add the completed version of oats_weblogic_console.rb
2019-05-16 16:24:31 -05:00
Metasploit
e05bf425f4
automatic module_metadata_base.json update
2019-05-16 11:34:37 -07:00
William Vu
2a06d038ed
Land #11842 , Powershell::wrap_double_quotes fix
2019-05-16 13:25:29 -05:00
William Vu
a57923ee64
Improve logic
2019-05-16 13:25:00 -05:00
Metasploit
2f18c18f01
Bump version of framework to 5.0.23
2019-05-16 10:06:52 -07:00
Metasploit
44471f47d7
automatic module_metadata_base.json update
5.0.22
2019-05-16 09:47:53 -07:00
Shelby Pace
730f912fea
Land #11802 , add GetSimple CMS RCE module
2019-05-16 11:30:21 -05:00
Shelby Pace
54adb4eaab
add documentation
2019-05-16 11:28:43 -05:00
7echSec
328b4fa860
Addressing Syntax error
2019-05-16 21:06:47 +05:30
7echSec
c947cd76f6
Removed register_advanced_options
...
Added 'Powershell::wrap_double_quotes' => false in DefaultOptions.
2019-05-16 14:19:52 +05:30
PierrickV
94f904311b
Fix broken links mostly to Microsoft website
2019-05-16 09:50:19 +02:00
7echSec
053ceed171
Regression fix: Disabling wrap_double_quotes
...
This client side exploit stopped working in current MSF throws an error in client browser.As per the analysis its because of Powershell::wrap_double_quotes=true.
I have just Added "Powershell::wrap_double_quotes" as advance option to override Datastore value.
2019-05-16 12:39:42 +05:30
rwincey
7c30422166
Documentation
2019-05-16 00:02:37 -04:00
rwincey
1c05958892
Exploit
2019-05-15 23:36:57 -04:00