Shelby Pace
183caff15c
Land #15418 , add modern events calendar rce
2021-07-26 09:45:05 -05:00
Shelby Pace
38ae82155e
modify info, fix spacing
2021-07-26 09:43:34 -05:00
Shelby Pace
9e95eb7be1
Land #15408 , add Wordpress sp doc file upload
2021-07-23 12:36:29 -05:00
Shelby Pace
d207f994c0
modify doc description
...
randomize form data, formatting
2021-07-23 12:33:41 -05:00
Hakyac
1a55cfc88c
Update documentation/modules/exploit/multi/http/wp_plugin_sp_project_document_rce.md
...
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com >
2021-07-23 10:12:10 +02:00
Hakyac
76a7233ee9
Update documentation/modules/exploit/multi/http/wp_plugin_sp_project_document_rce.md
...
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com >
2021-07-23 10:12:00 +02:00
Hakyac
cf9a5be774
Update documentation/modules/exploit/multi/http/wp_plugin_sp_project_document_rce.md
...
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com >
2021-07-23 10:11:49 +02:00
Hakyac
9eb8d521f8
Update documentation/modules/exploit/multi/http/wp_plugin_modern_events_calendar_rce.md
...
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com >
2021-07-23 10:08:19 +02:00
Shelby Pace
79d49a6857
Land #15402 , add Wordpress Backup Guard rce
2021-07-20 15:53:57 -05:00
Shelby Pace
f738383b98
rename docs, modify privileged to false
...
use vars_get in upload request
2021-07-20 15:31:38 -05:00
Hakyac
109ca7ec7a
Update documentation/modules/exploit/multi/http/wp_plugin_sp_project_document_rce.md
...
Co-authored-by: Spencer McIntyre <58950994+smcintyre-r7@users.noreply.github.com >
2021-07-20 09:05:27 +02:00
Hakyac
d26d9f50fa
Update wordpress_plugin_backup_guard_rce.md
2021-07-12 14:29:35 +02:00
Hakyac
ba69294967
Update wp_plugin_sp_project_document_rce.md
2021-07-12 14:28:35 +02:00
Yann Castel
6934ec7d18
initial commit
2021-07-12 14:25:38 +02:00
Grant Willcox
5c8aa9b802
Add in ForgeRock demonstration and fix up some last minor issues with the documentation to make it more accurate
2021-07-09 16:43:25 -05:00
Spencer McIntyre
fba838f4e8
Update docs, pin version and fix the check method
2021-07-09 16:39:58 -04:00
Yann Castel
d9233b9d98
typo 2
2021-07-09 11:54:25 +02:00
Yann Castel
3f2d7cda10
typo
2021-07-09 11:51:52 +02:00
Yann Castel
920b88a2bd
initial commit
2021-07-09 11:49:53 +02:00
Yann Castel
38cdad47c0
initial commit
2021-07-08 16:53:37 +02:00
Spencer McIntyre
a0bd903b50
Update module docs and the TARGETURI option
2021-07-06 15:52:50 -04:00
Spencer McIntyre
bfc45359ff
More documentation updates and address PR feedback
2021-07-06 11:27:06 -04:00
Spencer McIntyre
deb78275d0
Make the requested documentation changes
2021-07-06 09:55:19 -04:00
bwatters
0a43ec7e4a
Add module for CVE-2021-35464; pre-auth RCE in ForgeRock OpenAM server
2021-07-02 16:05:39 -05:00
Grant Willcox
537a7763f5
Land #15337 , Update apache_activemq_upload_jsp.rb to fix missing checks and add missing slashes to some requests
2021-06-14 15:28:40 -05:00
Grant Willcox
5b274770ef
Update exploit code to add missing slashes to certain important parts of the code where the exploit might fail if a custom path is supplied, and also improve the error handling in the code overall
2021-06-14 15:02:38 -05:00
Wyatt Dahlenburg
eb76aae2a7
Merge branch 'master' of github.com:rapid7/metasploit-framework into hashicorp_nomad
2021-05-25 15:56:13 -05:00
Wyatt Dahlenburg
6dccf0dd20
Adding Nomad documentation
2021-05-18 10:12:04 -05:00
Alan Foster
2b837a9d11
Add ssl setup documentation for gitlab
2021-05-17 23:59:08 +01:00
Alan Foster
5a0360228f
Update cockpit cms module
2021-05-12 17:20:31 +01:00
Brendan Coles
4a93f15c80
Land #15136 , Set microfocus_ucmdb_unauth_deser default payload to reverse_python
2021-05-02 10:27:05 +00:00
Pedro Ribeiro
e6b605369e
UCMDB: remove warning from docs and change Linux target to reverse_python
2021-05-02 16:53:02 +07:00
Tim W
165b25275a
minor documentation fix
2021-04-30 22:32:47 +01:00
Grant Willcox
f267f0866c
Fix up documentation typos and improve JavaScript using comments from @timwr's review.
2021-04-30 10:54:09 -05:00
Grant Willcox
9b528645b1
Fix minor typo on the Pwn2Own year
2021-04-27 13:26:27 -05:00
Grant Willcox
5541988d10
Upload working exploit and documentation for CVE-2021-21220
2021-04-27 13:23:35 -05:00
Erran Carey
dcf457f7e9
Fix a typo in Eclipse Equinox product name
...
The osgi_console_exec module docs had a few stray characters for the
product name and description. The product name confused me when
googling for this module.
2021-04-23 11:57:48 +01:00
agalway-r7
93c7727622
Land #15058 , Cockpit CMS RCE
2021-04-21 13:21:55 +01:00
h00die
51f9e1ae73
cockpit cms rce
2021-04-18 18:52:04 -04:00
Tim W
97425602e9
fix typo and docs in chrome_simplifiedlowering_overflow
2021-04-16 14:59:43 +01:00
Tim W
7c575cd38f
Land #15007 , add a chrome renderer exploit (CVE-2020-16040)
2021-04-08 22:18:20 +01:00
rajvardhan agarwal
c863c324ae
Add exploit for CVE-2020-16040
2021-04-06 17:25:27 +05:30
Christophe De La Fuente
73a8b7aa5f
Add Gitea and Gogs RCE modules and documentations
2021-03-31 16:47:29 +02:00
William Vu
151b8f2f92
Update vmware_vcenter_uploadova_rce module doc
2021-03-30 21:08:21 -05:00
Spencer McIntyre
006faaab9a
Land #14924 , Add auxiliary and exploit modules for CVE-2020-6207 in SAP Solution Manager
2021-03-25 17:48:56 -04:00
Vladimir Ivanov
b066145cf1
Minor updates
...
Updated documentation auxiliary module cve_2020_6207_solman_rce.md
Updated documentation in exploit module cve_2020_6207_solman_rs.md
2021-03-25 17:07:20 +03:00
Grant Willcox
f01b434160
Land #14896 , Fix apache_activemq_upload_jsp exploit module for Java 8
2021-03-24 10:22:03 -05:00
Grant Willcox
9d7e9990f4
Update documentation wording a bit to be more appropriate
2021-03-24 09:17:22 -05:00
Vladimir Ivanov
d76224066f
Rename option URIPATH to TARGETURI
2021-03-23 13:33:39 +03:00
Vladimir Ivanov
6e13a26fd3
Delete links to launchpad.support.sap.com in doc files
2021-03-22 11:03:53 +03:00