Julien Voisin
|
486390d881
|
Update ms10_061_spoolss.rb
|
2025-06-02 20:45:44 +02:00 |
|
Julien Voisin
|
08c5654ef2
|
Update modules/exploits/freebsd/samba/trans2open.rb
Co-authored-by: cgranleese-r7 <69522014+cgranleese-r7@users.noreply.github.com>
|
2025-06-02 16:05:12 +02:00 |
|
Julien Voisin
|
7738d146b9
|
Update modules/exploits/solaris/samba/trans2open.rb
Co-authored-by: cgranleese-r7 <69522014+cgranleese-r7@users.noreply.github.com>
|
2025-06-02 16:05:06 +02:00 |
|
Julien Voisin
|
54c5e7df18
|
Update modules/exploits/windows/smb/ms10_061_spoolss.rb
Co-authored-by: cgranleese-r7 <69522014+cgranleese-r7@users.noreply.github.com>
|
2025-06-02 16:04:59 +02:00 |
|
Julien Voisin
|
0106a4440e
|
Merge branch 'master' into aka_equationgroup
|
2025-05-30 17:17:54 +02:00 |
|
adfoster-r7
|
f1d7f2ed22
|
Revert "Ensure thinkphp rce runs on metasploit pro"
|
2025-05-29 10:54:51 +01:00 |
|
Diego Ledda
|
ce6e0d1164
|
Merge pull request #20096 from h00die-gr3y/CVE-2025-30406
Gladinet CentreStack/Triofox ASP.NET ViewState Deserialization [CVE-2025-30406]
|
2025-05-28 13:46:13 +02:00 |
|
cgranleese-r7
|
f6faa5598b
|
Fixes modules to now correctly use a hash with report note
|
2025-05-22 10:59:50 +01:00 |
|
jheysel-r7
|
73d1350842
|
Merge pull request #20215 from bcoles/rubocop-Lint/Syntax
Modules: Resolve Rubocop Lint/Syntax violations
|
2025-05-21 14:26:49 -07:00 |
|
jheysel-r7
|
ca40f6ecbc
|
Merge pull request #20214 from Chocapikk/invision_customcss_rce
Add Invision Community 5.0.6 customCss RCE (CVE-2025-47916)
|
2025-05-21 09:29:14 -07:00 |
|
jheysel-r7
|
0600de2d90
|
Merge pull request #20177 from msutovsky-r7/clinic_management_system_sqli2rce
Clinic Patient's Management System SQLi (CVE-2025-3096)
|
2025-05-21 08:42:16 -07:00 |
|
bcoles
|
943c94774a
|
Modules: Resolve Rubocop Lint/Syntax violations
|
2025-05-21 18:27:24 +10:00 |
|
Martin Sutovsky
|
1d6ec73a3c
|
Fixes file cleanup
|
2025-05-21 09:05:41 +02:00 |
|
Valentin Lobstein
|
4d3e786a6e
|
Update invision_customcss_rce.rb
|
2025-05-21 08:39:52 +02:00 |
|
Martin Sutovsky
|
86335ba84c
|
Fixes URI path
|
2025-05-21 07:33:00 +02:00 |
|
Chocapikk
|
14501a6084
|
Add lower bound version
|
2025-05-20 23:00:08 +02:00 |
|
Valentin Lobstein
|
5a436d27b9
|
Update modules/exploits/multi/http/invision_customcss_rce.rb
Co-authored-by: Julien Voisin <jvoisin@users.noreply.github.com>
|
2025-05-20 21:28:30 +02:00 |
|
jheysel-r7
|
18dc39e9a5
|
Merge pull request #20213 from bcoles/modules-exploits-linux-pop3
modules/exploits/linux/pop3: Resolve RuboCop violations
|
2025-05-20 11:22:05 -07:00 |
|
jheysel-r7
|
3a0e294f50
|
Merge pull request #20212 from bcoles/modules-exploits-linux-redis
modules/exploits/linux/redis: Resolve RuboCop violations
|
2025-05-20 11:21:35 -07:00 |
|
jheysel-r7
|
426aaa80fb
|
Merge pull request #20211 from bcoles/modules-exploits-linux-ids
modules/exploits/linux/ids: Resolve RuboCop violations
|
2025-05-20 10:57:03 -07:00 |
|
jheysel-r7
|
b99e161003
|
Merge pull request #20210 from bcoles/modules-exploits-linux-imap
modules/exploits/linux/imap: Resolve RuboCop violations
|
2025-05-20 10:50:58 -07:00 |
|
jheysel-r7
|
dd3093c806
|
Merge pull request #20203 from bcoles/rubocop-modules-exploits-linux-upnp
modules/exploits/linux/upnp: Resolve RuboCop violations
|
2025-05-20 10:46:46 -07:00 |
|
Chocapikk
|
28b7c7f786
|
Add Invision Community 5.0.6 customCss RCE (CVE-2025-47916)
|
2025-05-20 18:33:06 +02:00 |
|
jheysel-r7
|
2810fdaa4a
|
Merge pull request #20165 from bcoles/rubocop-modules-exploits-linux-browser
modules/exploits/linux/browser: Resolve RuboCop violations
|
2025-05-20 09:19:34 -07:00 |
|
bcoles
|
693620e1a5
|
modules/exploits/linux/pop3: Resolve RuboCop violations
|
2025-05-21 02:19:09 +10:00 |
|
bcoles
|
6597a6c5fc
|
modules/exploits/linux/redis: Resolve RuboCop violations
|
2025-05-21 02:07:54 +10:00 |
|
bcoles
|
3aa6e2d8db
|
modules/exploits/linux/ids: Resolve RuboCop violations
|
2025-05-20 23:54:29 +10:00 |
|
bcoles
|
ec7d54152b
|
modules/exploits/linux/imap: Resolve RuboCop violations
|
2025-05-20 23:42:47 +10:00 |
|
msutovsky-r7
|
561eef98c1
|
Land #20188, adds module for CVE-2024-7399 Samsung MagicINFO 9 Server
Samsung MagicINFO 9 Server RCE (CVE-2024-7399) Module
|
2025-05-19 09:49:09 +02:00 |
|
Martin Sutovsky
|
070bd54d33
|
Addressing comments
|
2025-05-19 07:17:14 +02:00 |
|
bcoles
|
d567248b16
|
modules/exploits/linux/upnp: Resolve RuboCop violations
|
2025-05-18 16:29:41 +10:00 |
|
jheysel-r7
|
71565c6cdc
|
Update modules/exploits/linux/browser/adobe_flashplayer_aslaunch.rb
Co-authored-by: Simon Janusz <85949464+sjanusz-r7@users.noreply.github.com>
|
2025-05-16 15:07:08 -07:00 |
|
Martin Sutovsky
|
fb24c55a3e
|
Fixes deleting file
|
2025-05-16 11:36:32 +02:00 |
|
Diego Ledda
|
c68b10b640
|
Merge pull request #20164 from bcoles/rubocop-modules-exploits-linux-games
modules/exploits/linux/games: Resolve RuboCop violations
|
2025-05-16 10:27:24 +02:00 |
|
Martin Sutovsky
|
e0383b416f
|
Add report_vuln
|
2025-05-16 08:56:53 +02:00 |
|
h4x-x0r
|
647545c5ef
|
Update magicinfo_traversal.rb
|
2025-05-15 22:13:08 +01:00 |
|
h4x-x0r
|
bd181f8a13
|
Update magicinfo_traversal.rb
|
2025-05-15 22:11:23 +01:00 |
|
h4x-x0r
|
6d2a1e529e
|
Update magicinfo_traversal.rb
|
2025-05-15 20:11:59 +01:00 |
|
Brendan
|
76471731f9
|
Merge pull request #20112 from cdelafuente-r7/mod/ivanti/rce/cve_2025_22457
Ivanti Connect Secure Unauthenticated RCE via Stack-based Buffer Overflow CVE-2025-22457
|
2025-05-15 11:44:49 -05:00 |
|
Martin Sutovsky
|
e93b4d472b
|
Fixing disclosure year
|
2025-05-15 16:49:18 +02:00 |
|
Martin Sutovsky
|
41b35fb333
|
Addressing comments
|
2025-05-15 16:48:48 +02:00 |
|
bcoles
|
42a383e4c7
|
modules/exploits/linux/games: Resolve RuboCop violations
|
2025-05-16 00:09:30 +10:00 |
|
adfoster-r7
|
b67a0f7851
|
Merge pull request #20194 from adfoster-r7/ensure-thinkphp-rce-runs-on-metasploit-pro
Ensure thinkphp rce runs on metasploit pro
|
2025-05-15 14:14:33 +01:00 |
|
adfoster-r7
|
20cda86177
|
Ensure thinkphp rce runs on metasploit pro
|
2025-05-15 12:55:12 +01:00 |
|
Diego Ledda
|
d12b6fe3ba
|
Merge pull request #20163 from bcoles/rubocop-modules-exploits-linux-antivirus
modules/exploits/linux/antivirus: Resolve RuboCop violations
|
2025-05-15 13:11:08 +02:00 |
|
msutovsky-r7
|
c598d8b4b0
|
Land #20020, adds module for Nextcloud Workflow Remote Code Execution
Add exploit module for the nextcloud workflow vulnerability CVE-2023-26482
|
2025-05-15 12:31:51 +02:00 |
|
Christophe De La Fuente
|
365caab8fc
|
Update the error message in case of Broken pipe error and update the documentation
|
2025-05-15 12:10:53 +02:00 |
|
whotwagner
|
97ecaa7c30
|
Refactoring indentations
|
2025-05-15 09:16:26 +00:00 |
|
whotwagner
|
61dc956bb3
|
Update modules/exploits/unix/webapp/nextcloud_workflows_rce.rb
Co-authored-by: msutovsky-r7 <martin_sutovsky@rapid7.com>
|
2025-05-15 11:15:05 +02:00 |
|
whotwagner
|
72c9d5b038
|
Update modules/exploits/unix/webapp/nextcloud_workflows_rce.rb
Co-authored-by: msutovsky-r7 <martin_sutovsky@rapid7.com>
|
2025-05-15 11:14:25 +02:00 |
|