William Vu
32334c2386
Update all module splats from http:// to https://
2019-08-15 18:10:44 -05:00
William Vu
f317987e02
Land #12175 , hadoop_unauth_exec NoMethodError fix
2019-08-07 22:44:55 -05:00
William Vu
b5fd9b4fed
Fix whitespace
2019-08-07 22:44:38 -05:00
Green-m
6cf0ff0678
Fix #12156 , NoMethodError in hadoop exploit.
2019-08-08 10:06:40 +08:00
Adam Cammack
cf9b94a964
Set needs_cleanup flag for exploits that need it
...
The `needs_cleanup` flag needs to be set per-module when an exploit
needs an interactive session to clean up. Some `FileDropper` exploits
need additional cleanup to what the mixin provides, but since all
`FileDropper`s already mark themselves as needing cleanup those are not
covered here. A few of these could potentially be refactored to use the
original exploitation method to clean up or to compile the list of
files/commands to clean up ahead of time, but that is out of the scope
of this fix.
2019-08-02 10:23:53 -05:00
Adam Cammack
5e64f8560a
Fix whitespace
2019-08-02 10:23:41 -05:00
Wei Chen
63de0051f4
Cosmetic changes
2019-07-28 21:38:54 -05:00
Green-m
e71b92aa60
We are not evil!
2019-07-21 09:33:18 +08:00
Green-m
07f3c074d4
Add doc and enhance the module.
2019-07-20 00:17:57 +08:00
Green-m
b6697f5016
Add redis rce module and data stuff.
...
To do:
1. Check env of system and compiler.
2. Add a compiled so file to be compatible with windows and mac.
3. Add doc.
2019-07-17 15:33:02 +08:00
bcoles
c7ff78c277
Remove spaces at EOL
2019-06-29 14:01:18 +10:00
Brendan Coles
203e3b74db
Add Serv-U FTP Server prepareinstallation Privilege Escalation
2019-06-29 03:52:53 +00:00
William Vu
0a00f3851a
Land #12007 , true 0s timeout in send_request_*
2019-06-28 12:32:32 -05:00
William Vu
cc3fd747aa
Add Pen Test Partners reference
...
Did we somehow miss this?
2019-06-26 11:05:22 -05:00
Wei Chen
685fb55179
Land #11987 , Add Nagios XI 5.5.6 magpie_debug Root Exploit
2019-06-25 16:17:50 -05:00
Wei Chen
23dbc4d90d
Change file name
2019-06-25 16:10:44 -05:00
Wei Chen
e9fc9970ba
Make names more random. Also, make metadata changes
2019-06-25 16:09:15 -05:00
William Vu
7739e9f43e
Update my modules
2019-06-24 13:38:14 -05:00
Wei Chen
a93a520c3a
Land #11960 , Add LPE for Cisco Prime Infrastructure's runrshell exe
2019-06-19 10:49:17 -05:00
Wei Chen
c637755ebd
Land #11956 - Add Cisco Prime Infrastructure Health Monitor Tar RCE
2019-06-19 10:46:35 -05:00
Shelby Pace
ddf7eadeee
modified version check
2019-06-19 08:31:48 -05:00
Wei Chen
384cfc7db5
update checkcode
2019-06-18 15:58:57 -05:00
Shelby Pace
d4d2eab770
removed some whitespace, added a check
2019-06-17 15:29:08 -05:00
Özkan Mustafa Akkuş
a5020b8f30
Fix spaces at EOL
2019-06-17 13:16:56 +03:00
Özkan Mustafa Akkuş
b5e34cb783
Converting version check request to vars_get
...
We also need to add the "testing = 1" cookie to the login request. Otherwise, the browser displays a No-Cookie error.
2019-06-17 10:46:46 +03:00
yaumn
e13456ce0d
Add root to the filename
2019-06-16 23:32:57 +01:00
siberguvenlik
17f686a87d
Adding module documentation
2019-06-16 18:27:01 -04:00
yaumn
8faa138289
Change targets and default http delay
2019-06-16 23:13:45 +01:00
siberguvenlik
3d463a1e20
Adding correction of Check and Payload definitions
2019-06-16 17:58:31 -04:00
yaumn
863beaea92
First commit for module Nagios XI RCE
2019-06-16 22:10:32 +01:00
siberguvenlik
414c614b55
CVE-2019-12840 - Add Webmin 1.910 RCE Module
2019-06-16 11:26:00 -04:00
Wei Chen
d74881a3c0
Update based on bcole's feedback
2019-06-10 12:12:49 -05:00
Wei Chen
caa9987a77
Register payload for cleanup
2019-06-10 11:20:25 -05:00
Wei Chen
d63484562c
Correct disclosure date
2019-06-10 11:14:41 -05:00
Wei Chen
12cfada465
Add Cisco Prime Infrastructure runrshell Privilege Escalation
2019-06-10 10:29:43 -05:00
Brendan Coles
8cac968acb
Fix abrt package version check
2019-06-10 02:21:10 +00:00
Pedro Ribeiro
6693e3e347
add cve to trueonline v2
2019-06-08 17:41:04 +07:00
Pedro Ribeiro
903ea5ebce
add cve to p660hn v1
2019-06-08 17:38:44 +07:00
Pedro Ribeiro
c763f84348
add cve to billion module
2019-06-08 17:37:05 +07:00
Wei Chen
4d6d06c9f9
Update disclosure date
2019-06-07 15:59:59 -05:00
Wei Chen
2053513dc5
Minotr update for cpi_tararchive_upload
2019-06-07 13:12:14 -05:00
Wei Chen
69492d2a25
Add Cisco Prime Infrastructure Health Monitor TarArchive Exploit
2019-06-07 03:08:57 -05:00
Jacob Robles
c93c65cef5
Update date format
2019-06-04 12:24:00 -05:00
Shelby Pace
c2786eb87c
made suggested changes
2019-05-30 14:09:40 -05:00
Shelby Pace
74812ffe4d
Update modules/exploits/linux/http/librenms_addhost_cmd_inject.rb
...
Co-Authored-By: @shellfail <jrobles@rapid7.com >
2019-05-30 10:52:34 -05:00
Shelby Pace
8c11a1c95a
Update modules/exploits/linux/http/librenms_addhost_cmd_inject.rb
...
Co-Authored-By: @shellfail <jrobles@rapid7.com >
2019-05-30 10:51:57 -05:00
Shelby Pace
590b9748c1
changed file name and documentation
2019-05-29 18:30:39 -05:00
Shelby Pace
6606e1fed4
Update modules/exploits/linux/http/librenms_cmd_injection.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-05-29 18:00:59 -05:00
Shelby Pace
5253d34dd3
Update modules/exploits/linux/http/librenms_cmd_injection.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-05-29 18:00:07 -05:00
Shelby Pace
34528b1512
Update modules/exploits/linux/http/librenms_cmd_injection.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-05-29 17:59:55 -05:00