Brendan Coles
991ccdbda5
Land #12106 , Add Linux PTRACE_TRACEME local root exploit
2019-10-23 14:01:14 +00:00
Tim W
8c93b219d1
fix compile.rb and rubocop
2019-10-23 20:54:42 +08:00
Tim W
7ff71819e9
add architecture check to check method
2019-10-23 20:38:55 +08:00
Tim W
3b5d0b98e7
add a basic check method using loginctl
2019-10-23 19:50:19 +08:00
Tim W
4d4754a389
feedback from bcoles
2019-10-10 13:30:31 +08:00
Brendan Coles
af05a33957
Land #12408 , Fix spelling mistakes
2019-10-05 21:10:56 +00:00
h00die
9f29f5f419
fix spelling received
2019-10-05 14:40:27 -04:00
h00die
905eb17132
begining to fix spelling errors
2019-10-05 14:26:34 -04:00
Shelby Pace
4710322cd7
Land #11762 , add sosreport privesc
2019-09-24 09:48:57 -05:00
bwatters-r7
25b56c410d
Land #12189 , Add module for LibreNMS CVE-2019-10669
...
Merge branch 'land-12189' into upstream-master
2019-09-06 12:01:09 -05:00
Tim W
5123fdbb5e
s/pkexec_helper_ptrace/ptrace_traceme_pkexec_helper/g
2019-09-06 01:00:44 +08:00
Shelby Pace
490800f834
Land #11643 , add Awind SNMP RCE
2019-09-04 12:06:36 -05:00
Shelby Pace
8dbb41ee5b
remove extra line
2019-09-04 12:04:46 -05:00
Tim W
bade8bfc48
add live compiling
2019-09-03 17:31:04 +08:00
h00die
ea50149ba7
land #12212 linux LPE ktsuss exploit
2019-09-02 13:32:45 -04:00
h00die
4b9e748882
ktsuss misc fixes
2019-09-02 13:31:30 -04:00
h00die
5b89c221f0
land #11799 linux local priv esc for cached sudo privs
2019-09-02 11:12:21 -04:00
William Vu
6f58981396
Land #12244 , cisco_ucs_scpuser exploit
2019-08-30 13:35:50 -05:00
William Vu
83de041894
Land #12243 , cisco_ucs_rce exploit
2019-08-30 13:35:29 -05:00
Pedro Ribeiro
e36308e5bb
Add FD ref
2019-08-31 00:18:46 +07:00
William Vu
b0b72892be
Deprecate/delete cisco_rv130_rmi_rce by alias
2019-08-30 12:03:43 -05:00
William Vu
49b3af3870
Merge remote-tracking branch 'upstream/master' into pr/12133
2019-08-30 12:01:48 -05:00
William Vu
2ea5e90764
Land #12223 , module deprecation by alias
2019-08-30 11:36:50 -05:00
Pedro Ribeiro
0c1f3f2d03
make some adjustments
2019-08-29 19:50:01 +07:00
Pedro Ribeiro
40b0d02f39
make some adjustments
2019-08-29 19:49:37 +07:00
Pedro Ribeiro
c88ce55013
Add github link
2019-08-28 11:08:35 +07:00
Pedro Ribeiro
98efac5bfb
Add github link
2019-08-28 11:08:01 +07:00
Pedro Ribeiro
7fd56f5fb3
Add Cisco UCS scpuser exploit
2019-08-28 11:00:08 +07:00
Pedro Ribeiro
d6f47fd03a
s/Directory/Director
2019-08-28 10:58:41 +07:00
Pedro Ribeiro
1aad95f7c4
Add exploit for Cisco UCS RCE
2019-08-28 10:55:49 +07:00
Shelby Pace
413cd7194d
Land #12064 , add Exim Local Privesc module
2019-08-23 12:23:53 -05:00
Adam Cammack
8aa00d97aa
Add new moved_from to moved module
2019-08-22 17:58:20 -05:00
William Vu
901943c90f
Move Ubiquiti AirOS exploit from SSH to HTTP
2019-08-22 17:58:20 -05:00
Brendan Coles
ca82e6cd25
Add ktsuss suid Privilege Escalation module
2019-08-19 13:28:02 +00:00
William Vu
32334c2386
Update all module splats from http:// to https://
2019-08-15 18:10:44 -05:00
Shelby Pace
70d5bd4eb3
add default payload, check login
2019-08-13 13:39:15 -05:00
Shelby Pace
286263c094
add quotes, platform
2019-08-13 11:18:31 -05:00
Shelby Pace
48333c5d4e
randomize parameter value
2019-08-13 11:14:10 -05:00
Shelby Pace
da98d3d376
finish documentation and module
2019-08-13 09:47:24 -05:00
Shelby Pace
71f4eadd18
module rework and some documentation
2019-08-12 15:22:22 -05:00
Brendan Coles
9fdee466ca
Update ptrace_sudo_token_priv_esc
2019-08-10 07:03:23 +00:00
Shelby Pace
76da9ea4fc
get shell with test data
2019-08-09 08:40:41 -05:00
William Vu
f317987e02
Land #12175 , hadoop_unauth_exec NoMethodError fix
2019-08-07 22:44:55 -05:00
William Vu
b5fd9b4fed
Fix whitespace
2019-08-07 22:44:38 -05:00
Green-m
6cf0ff0678
Fix #12156 , NoMethodError in hadoop exploit.
2019-08-08 10:06:40 +08:00
Tim W
979681443c
add rudimentary check method
2019-08-06 14:48:37 +08:00
Tim W
b35b4674d0
fix forking behaviour
2019-08-06 14:17:28 +08:00
Tim W
f48d1b1231
add more links
2019-08-06 13:54:15 +08:00
Adam Cammack
cf9b94a964
Set needs_cleanup flag for exploits that need it
...
The `needs_cleanup` flag needs to be set per-module when an exploit
needs an interactive session to clean up. Some `FileDropper` exploits
need additional cleanup to what the mixin provides, but since all
`FileDropper`s already mark themselves as needing cleanup those are not
covered here. A few of these could potentially be refactored to use the
original exploitation method to clean up or to compile the list of
files/commands to clean up ahead of time, but that is out of the scope
of this fix.
2019-08-02 10:23:53 -05:00
Adam Cammack
5e64f8560a
Fix whitespace
2019-08-02 10:23:41 -05:00