Ricardo Almeida
|
4845b4b1fa
|
Orientdb 2.2.x RCE - Fix regular expression for version detection
|
2017-07-26 14:35:05 +01:00 |
|
Ricardo Almeida
|
30664924c8
|
Orientdb 2.2.x RCE - Reverted to send_request_raw due to issues exploiting windows boxes
|
2017-07-26 13:59:14 +01:00 |
|
Ricardo Almeida
|
6c22f785e9
|
Orientdb 2.2.x RCE - Fine tune vulnerable version detection; removed redundant uri normalization checking; Swapped send_request_raw for send_request_cgi; using vars_get;
|
2017-07-24 09:52:47 +01:00 |
|
Ricardo Almeida
|
f3f96babb9
|
Orientdb 2.2.x RCE - Changed the java_craft_runtime_exec function; Tested the module against Win7-Pro-x64 with OrientDB v2.2.20 with StagerCmd flavors vbs and certutil with success
|
2017-07-19 10:46:10 +01:00 |
|
Ricardo Almeida
|
219987726f
|
Orientdb 2.2.x RCE - Changed the CmdStager flavor to VBS script
|
2017-07-18 17:18:14 +01:00 |
|
Ricardo Almeida
|
5ca523e2ce
|
Orientdb 2.2.x RCE - Add warning about windows
|
2017-07-18 17:11:54 +01:00 |
|
Ricardo Almeida
|
af0a9c2f86
|
Orientdb 2.2.x RCE tidy stuff
|
2017-07-18 17:07:29 +01:00 |
|
Ricardo Almeida
|
99ba645034
|
Orientdb 2.2.x RCE
|
2017-07-18 16:53:44 +01:00 |
|