bwatters
02eb49ed00
Land #19395 , Electerm post password gather module
...
Merge branch 'land-19395' into upstream-master
2024-08-27 16:17:45 -05:00
Jack Heysel
8bf354cad2
Land #19417 , Improve wp_backup_migration_php exploit
...
The new PHP filter chain evaluates a POST parameter, which simplifies
the process and reduces the payload size enabling the module to send the
entire paylaod in one POST request instead of writing the payload to a
file character by character over many POST requests. Support for both
Windows and Linux Meterpreter payloads, not just PHP Meterpreter, has
also been added.
2024-08-27 15:17:00 -04:00
jheysel-r7
61fa0c40b8
Update documentation/modules/exploit/multi/http/wp_backup_migration_php_filter.md
2024-08-27 14:14:28 -04:00
bwatters
6c24e0a952
Land #19393 , Update OFBiz ProgramExport RCE for Patch Bypass
...
Merge branch 'land-19393' into upstream-master
2024-08-27 11:48:38 -05:00
bwatters
4af2294709
Land #19386 , Ivanti Virtual Traffic Manager (vTM) Authentication Bypass (CVE-2024-7593) Module
...
Merge branch 'land-19386' into upstream-master
2024-08-27 09:39:10 -05:00
bwatters
f74b7ccef5
Land #19415 , Update the ldap_esc_vulnerable_cert_finder module
...
Merge branch 'land-19415' into upstream-master
2024-08-26 18:28:33 -05:00
bwatters
84431b0a4e
Land #19380 , Control iD iDSecure Authentication Bypass (CVE-2023-6329) Module
...
Merge branch 'land-19380' into upstream-master
2024-08-26 18:09:09 -05:00
Chocapikk
c32c1e3a66
Update doc
2024-08-24 17:31:09 +02:00
Chocapikk
4ee30b24cb
Rewrite wp_backup_migration_php_filter
2024-08-24 17:16:58 +02:00
Spencer McIntyre
4cfa93f878
Update the ldap_esc_vulnerable_cert_finder module
2024-08-23 16:49:30 -04:00
dledda-r7
ec5892ff1f
Land #19363 , Ray Modules CVE-2023-6019 CVE-2023-6020 CVE-2023-48022
2024-08-23 04:55:17 -04:00
三米前有蕉皮
c37b697b99
Update documentation/modules/post/multi/gather/electerm.md
...
Co-authored-by: Spencer McIntyre <58950994+smcintyre-r7@users.noreply.github.com >
2024-08-22 22:27:51 +08:00
dledda-r7
35da4662ed
Land #19351 , DIAEnergie SQL Injection
2024-08-21 09:44:15 -04:00
dwelch-r7
f3a220518a
Land #19394 , SPIP Unauthenticated RCE Exploit
2024-08-21 13:58:26 +01:00
Chocapikk
62ab17b14d
Update documentation and Docker Compose for SPIP, remove Rex.sleep() in Metasploit module due to stable payload.
2024-08-20 19:41:05 +02:00
Takah1ro
52852cea72
Add cve ref
2024-08-20 12:59:52 +09:00
Chocapikk
c7d20853d6
Update documentation
2024-08-19 19:51:36 +02:00
dledda-r7
afd0f1974b
Land #19373 , Fortra FileCatalyst Workflow SQL Injection
2024-08-19 04:10:58 -04:00
cn-kali-team
57a327a9f4
doc
2024-08-16 23:40:04 +08:00
cn-kali-team
c4c58e466d
doc
2024-08-16 20:07:16 +08:00
cn-kali-team
1127225363
electerm
2024-08-16 20:04:57 +08:00
Chocapikk
3d90eb0f43
Add spip_porte_plume_previsu_rce
2024-08-16 10:50:23 +02:00
Takah1ro
209f172aa1
Update document
2024-08-16 08:56:01 +09:00
Takah1ro
7258ca4fb1
Remove unnecessary option for simplicity
2024-08-16 08:49:34 +09:00
jheysel-r7
ea10360c81
Update OFBiz ProgramExport RCE for Patch Bypass
2024-08-15 09:18:15 -07:00
Takah1ro
ea1b9e925e
Delete old three exploits in one module
2024-08-15 08:17:36 +09:00
cgranleese-r7
dbc51d1cd4
Land #19347 , OpenMetadata authentication bypass and SpEL injection exploit chain[CVE-2024-28255 and CVE-2024-28254]
2024-08-14 16:06:10 +01:00
dledda-r7
f211fcb6a6
Land #19370 , LG Simple Editor Command Injection
2024-08-14 10:22:29 -04:00
cgranleese-r7
36322ff274
Land #19348 , Apache HugeGraph Gremlin RCE (CVE-2024-27348)
2024-08-14 10:06:21 +01:00
h4x-x0r
9c72a85134
Verified more versions
...
Verified exploit against more affected versions
2024-08-14 06:33:45 +01:00
h4x-x0r
75201b0892
Updated references
...
references, affected versions, credits
2024-08-14 05:15:36 +01:00
h4x-x0r
7bfc386973
Updated
...
added error handling, documentation, version check, store_valid_credential
2024-08-14 04:57:08 +01:00
h4x-x0r
26d6347919
Code cleanup
...
Code cleanup
2024-08-11 06:15:24 +01:00
h4x-x0r
5fa18a66ee
Control iD iDSecure Authentication Bypass (CVE-2023-6329) Module
...
Control iD iDSecure Authentication Bypass (CVE-2023-6329) Module
2024-08-11 05:41:07 +01:00
Takah1ro
0ffe335660
Add module docs
2024-08-10 10:59:00 +09:00
Takah1ro
064d463c37
Formatting doc
2024-08-08 07:45:16 +09:00
Takah1ro
35354c8407
Update document
2024-08-07 21:20:09 +09:00
Takah1ro
a92b51904a
Update document
2024-08-07 21:16:32 +09:00
h4x-x0r
8732d7cd58
LG Simple Editor Command Injection (CVE-2023-40504) Module
...
Exploit Module and Documentation for the LG Simple Editor Command Injection (CVE-2023-40504)
2024-08-07 05:16:25 +01:00
Takah1ro
b7e4247d22
Avoid using CVE as option
2024-08-07 08:43:57 +09:00
Takah1ro
b487dadf8c
Remove explicit return
2024-08-05 13:01:11 +09:00
Takah1ro
ab38c83d9c
Update module document
2024-08-05 08:51:56 +09:00
Takah1ro
93f1362d22
Add module document
2024-08-05 08:47:29 +09:00
h00die-gr3y
8f0d22ded4
Fourth release module and documentation
2024-08-02 21:04:50 +00:00
Jack Heysel
75c737dabe
Responded to comments
2024-08-02 10:47:53 -07:00
h4x-x0r
2ce0a7a3fd
v7.15 Support added
...
Updated to work with v7.15 too.
2024-08-02 15:43:26 +01:00
h4x-x0r
c8eb919af8
rm calibre
...
rm calibre
2024-08-02 06:18:34 +01:00
h4x-x0r
6dbb264a0d
Calibre Python Code Injection (CVE-2024-6782)
...
New Exploit Module for Calibre Python Code Injection (CVE-2024-6782)
2024-08-02 06:03:15 +01:00
h4x-x0r
025354b0ef
Calibre Python Code Injection (CVE-2024-6782)
...
Exploit Module for Calibre Python Code Injection (CVE-2024-6782)
2024-08-02 05:56:46 +01:00
h4x-x0r
6e3f95fd3a
Delete documentation/modules/exploit/multi/misc/calibre_exec.md
2024-08-01 23:29:34 -05:00