dwelch-r7
|
49a6b1b257
|
Remove requires that sneaked in while the PR was up
|
2020-12-07 11:02:10 +00:00 |
|
dwelch-r7
|
1617b3ec9b
|
Use zeitwerk for lib/msf/core folder
|
2020-12-07 10:31:45 +00:00 |
|
Alan Foster
|
76e967353e
|
Add auxiliary support to autocheck mixin
|
2020-12-03 01:09:06 +00:00 |
|
SunCSR Team
|
3fbe851d71
|
Update tomcat_ghostcat.rb
|
2020-11-30 08:33:32 +07:00 |
|
SunCSR Team
|
4dce7c070b
|
Update tomcat_ghostcat.rb
|
2020-11-26 16:24:49 +07:00 |
|
SunCSR Team
|
a87bc32a5c
|
Update tomcat_ghostcat.rb
|
2020-11-19 14:06:05 +07:00 |
|
SunCSR Team
|
803f3c7bf7
|
Update tomcat_ghostcat.rb
|
2020-11-19 09:27:05 +07:00 |
|
SunCSR Team
|
441c61190b
|
Update tomcat_ghostcat.rb
|
2020-11-17 00:00:32 +07:00 |
|
SunCSR Team
|
41aae4224f
|
Update tomcat_ghostcat.rb
|
2020-11-16 22:25:41 +07:00 |
|
SunCSR Team
|
7d860bb623
|
Rename modules/exploits/windows/http/tomcat_ghostcat.rb to modules/auxiliary/admin/http/tomcat_ghostcat.rb
|
2020-11-16 20:57:13 +07:00 |
|
Spencer McIntyre
|
3431d97c64
|
Remove modules whose deprecation date has past
|
2020-10-08 10:56:37 -04:00 |
|
Grant Willcox
|
a2675c13e8
|
Land #14213, Add disclosure date rubocop linting rule - enforce iso8601 disclosure dates
|
2020-10-07 12:09:59 -05:00 |
|
Ivanov Vladimir
|
fa7b711d60
|
Change ltype in loot
|
2020-10-07 10:12:09 -05:00 |
|
Grant Willcox
|
12095f9174
|
Make minor updates to the error messages
|
2020-10-07 10:12:09 -05:00 |
|
Ivanov Vladimir
|
df86b0c7c2
|
Update script to ensure action_file_read will correctly use fail_with, and to update the return types of send_first_request.
|
2020-10-07 10:11:12 -05:00 |
|
Grant Willcox
|
5ad2190c40
|
Apply updates to the module from the review process and a minor update to the documentation to note the renaming of the PATH option to URIPATH. Also update the check method so that it now works correctly and so that other functions return errors appropriately.
|
2020-10-07 10:08:57 -05:00 |
|
Ivanov Vladimir
|
cc721fd64f
|
Update several functions to apply review edits and also update the documentation accordingly.
|
2020-10-07 10:07:48 -05:00 |
|
Ivanov Vladimir
|
9ce3dc45f7
|
Delete default option: VERBOSE
|
2020-10-07 10:07:46 -05:00 |
|
Ivanov Vladimir
|
24d14f8816
|
Rename URN to PATH in several functions. Also change check function.
|
2020-10-07 10:04:55 -05:00 |
|
Grant Willcox
|
8a8dfafcc3
|
Rename the files and update some descriptions as there may be more XXE bugs in SAP in the future. Also update the documentation accordingly.
|
2020-10-07 10:04:03 -05:00 |
|
Grant Willcox
|
fc462d2465
|
Clean up code to remove some extra options and to make the match() calls a bit cleaner, as well as make some of the explanations a bit neater. Also remove duplicate code from a few places
|
2020-10-07 10:04:02 -05:00 |
|
Grant Willcox
|
a70cb25824
|
Remove all verbose options and tidy up one extra instance variable that was only used once
|
2020-10-07 10:04:02 -05:00 |
|
Vladimir Ivanov
|
7c682af98b
|
Create sap_igs_xxe.rb and its associated documentation, and apply RuboCop fixes.
|
2020-10-07 10:03:09 -05:00 |
|
Alan Foster
|
30809787c4
|
Convert disclosure dates to iso8601
|
2020-10-02 21:00:37 +01:00 |
|
Spencer McIntyre
|
bf13ffc692
|
Update documentation based on feedback
|
2020-10-01 09:19:15 -04:00 |
|
Christophe De La Fuente
|
59fff3d7fe
|
Land #14161, VyOS config processor
|
2020-09-28 13:02:19 +02:00 |
|
Spencer McIntyre
|
a14780d024
|
Update the zerologon options for clarity
|
2020-09-22 14:57:57 -04:00 |
|
Spencer McIntyre
|
3ae4eb3dce
|
Convert the BinData error_status value to a Ruby integer
|
2020-09-21 11:38:33 -04:00 |
|
h00die
|
610d4d86d2
|
initial vyos implementation
|
2020-09-20 19:48:20 -04:00 |
|
Spencer McIntyre
|
a810d37c47
|
Move the NetrServerPasswordSet2 DCERPC data defs into RubySMB
|
2020-09-18 16:19:23 -04:00 |
|
Spencer McIntyre
|
fdedcfa600
|
Updates to use the latest proposed RubySMB changes
|
2020-09-18 14:27:14 -04:00 |
|
Spencer McIntyre
|
996598bfc8
|
Use a proper constant and specify null values for forward compatibility
|
2020-09-17 18:07:41 -04:00 |
|
Spencer McIntyre
|
b794c88433
|
Implement a check method for the vulnerability
|
2020-09-17 14:37:36 -04:00 |
|
Spencer McIntyre
|
27b6c8a55b
|
Add module docs and apply rubocop fixes to the module
|
2020-09-17 14:28:53 -04:00 |
|
Spencer McIntyre
|
0b61092fe5
|
Add module data, use fail_with and rename an option for consistency
|
2020-09-17 13:35:30 -04:00 |
|
Spencer McIntyre
|
7e1e1f593f
|
Refactor the code and support restoring the machine password
|
2020-09-17 12:49:56 -04:00 |
|
Spencer McIntyre
|
58033cbaa2
|
Cleanup the code for CVE-2020-1472
|
2020-09-17 09:50:35 -04:00 |
|
Spencer McIntyre
|
f407da63e8
|
Initial check for CVE-2020-1472 complete
|
2020-09-16 16:15:19 -04:00 |
|
Christophe De La Fuente
|
e11840c2a5
|
land #14031, F5 processor
|
2020-09-14 18:38:58 +02:00 |
|
h00die
|
537be9054d
|
spacing and a to an
|
2020-08-25 16:17:37 -04:00 |
|
Spencer McIntyre
|
9bd687edcd
|
Land #14034, telpho10_credential_dump: Prevent traversal in untar
|
2020-08-25 09:35:32 -04:00 |
|
Shelby Pace
|
c578fde89c
|
Land #13982, add cisco 7937g ssh privesc
|
2020-08-21 15:04:24 -05:00 |
|
Shelby Pace
|
39284d4263
|
align logging line, fix msftidy_docs warning
|
2020-08-21 14:55:45 -05:00 |
|
debifrank
|
33524c0cbf
|
Create cisco_7937g_ssh_privesc.py
|
2020-08-21 13:40:53 -04:00 |
|
Brendan Coles
|
37a06756cc
|
telpho10_credential_dump: Prevent traveral in untar
|
2020-08-21 15:30:55 +00:00 |
|
h00die
|
c8a541c187
|
pre rubocop
|
2020-08-20 14:27:51 -04:00 |
|
Shelby Pace
|
86dbac3466
|
add a space to author field
|
2020-08-20 10:52:39 -05:00 |
|
h00die
|
3326d86db7
|
review comments
|
2020-08-20 10:26:13 -05:00 |
|
h00die
|
43fabcad53
|
arista
|
2020-08-20 10:25:08 -05:00 |
|
Spencer McIntyre
|
07ab8b294f
|
Land #13957, allow dns server on different port
|
2020-08-07 16:15:17 -04:00 |
|