William Vu
|
0a00f3851a
|
Land #12007, true 0s timeout in send_request_*
|
2019-06-28 12:32:32 -05:00 |
|
William Vu
|
7a26e1c257
|
Fix sshexec hanging on exec! and blocking close
|
2019-06-27 22:07:37 -05:00 |
|
William Vu
|
1503dcd168
|
Land #11997, SilentCleanup UAC bypass
|
2019-06-27 11:52:56 -05:00 |
|
William Vu
|
6f1aaac70e
|
Add enigma0x3 and fix nyshone69 researchers
|
2019-06-27 11:38:34 -05:00 |
|
William Vu
|
7b0aac72ec
|
Fix missing is_in_admin_group? method
This was missed in the refactor, since admin_group was removed.
|
2019-06-27 11:16:49 -05:00 |
|
Jeff McJunkin
|
2927fd5dc8
|
Update bypassuac_sluihijack: Fix typo
|
2019-06-26 14:25:32 -07:00 |
|
William Vu
|
61f09d0538
|
Land #12017, xdebug_unauth_exec nil fix
|
2019-06-26 12:26:30 -05:00 |
|
William Vu
|
cc3fd747aa
|
Add Pen Test Partners reference
Did we somehow miss this?
|
2019-06-26 11:05:22 -05:00 |
|
Patrick Webster
|
8d6f36e05c
|
Minor fix for xdebug_unauth_exec
Avoid triggering error where res.headers may not exist.
|
2019-06-27 01:00:49 +10:00 |
|
Wei Chen
|
685fb55179
|
Land #11987, Add Nagios XI 5.5.6 magpie_debug Root Exploit
|
2019-06-25 16:17:50 -05:00 |
|
Wei Chen
|
23dbc4d90d
|
Change file name
|
2019-06-25 16:10:44 -05:00 |
|
Wei Chen
|
e9fc9970ba
|
Make names more random. Also, make metadata changes
|
2019-06-25 16:09:15 -05:00 |
|
William Vu
|
5c14aea1a0
|
Fix target_platform check (it's empty, not nil)
|
2019-06-25 12:56:36 -05:00 |
|
William Vu
|
cf140f0840
|
Make SRVHOST the callback address
|
2019-06-25 12:43:04 -05:00 |
|
William Vu
|
44ad25ae34
|
Land #12008, struts2_content_type_ognl 302 fix
|
2019-06-25 00:40:58 -05:00 |
|
Carter Brainerd
|
5e8b076714
|
Final review changes
|
2019-06-25 07:21:08 +02:00 |
|
James Lee
|
303bfaa7eb
|
Don't worry about response code
I found one that returned a 302
|
2019-06-24 13:53:31 -05:00 |
|
William Vu
|
7739e9f43e
|
Update my modules
|
2019-06-24 13:38:14 -05:00 |
|
Carter Brainerd
|
d2dc5f6077
|
Review changes
|
2019-06-22 00:18:44 -04:00 |
|
Carter Brainerd
|
d90dba5d6e
|
Hopefully final msftidy fixes
|
2019-06-20 17:03:38 -04:00 |
|
Carter Brainerd
|
1a877abe09
|
Msftidy was not happy
|
2019-06-20 14:50:56 -04:00 |
|
Carter Brainerd
|
534e2bc405
|
Make the darn thing work
|
2019-06-20 14:40:46 -04:00 |
|
Carter Brainerd
|
fded7fb922
|
Create bypassuac_silentcleanup.rb
|
2019-06-20 13:53:54 -04:00 |
|
Wei Chen
|
8920152eca
|
Add a ZDI reference for CVE-2019-5420 Rails exploit
|
2019-06-20 10:43:21 -05:00 |
|
Wei Chen
|
a93a520c3a
|
Land #11960, Add LPE for Cisco Prime Infrastructure's runrshell exe
|
2019-06-19 10:49:17 -05:00 |
|
Wei Chen
|
c637755ebd
|
Land #11956 - Add Cisco Prime Infrastructure Health Monitor Tar RCE
|
2019-06-19 10:46:35 -05:00 |
|
Shelby Pace
|
ddf7eadeee
|
modified version check
|
2019-06-19 08:31:48 -05:00 |
|
Wei Chen
|
384cfc7db5
|
update checkcode
|
2019-06-18 15:58:57 -05:00 |
|
Shelby Pace
|
d4d2eab770
|
removed some whitespace, added a check
|
2019-06-17 15:29:08 -05:00 |
|
Özkan Mustafa Akkuş
|
a5020b8f30
|
Fix spaces at EOL
|
2019-06-17 13:16:56 +03:00 |
|
Özkan Mustafa Akkuş
|
b5e34cb783
|
Converting version check request to vars_get
We also need to add the "testing = 1" cookie to the login request. Otherwise, the browser displays a No-Cookie error.
|
2019-06-17 10:46:46 +03:00 |
|
yaumn
|
e13456ce0d
|
Add root to the filename
|
2019-06-16 23:32:57 +01:00 |
|
siberguvenlik
|
17f686a87d
|
Adding module documentation
|
2019-06-16 18:27:01 -04:00 |
|
yaumn
|
8faa138289
|
Change targets and default http delay
|
2019-06-16 23:13:45 +01:00 |
|
siberguvenlik
|
3d463a1e20
|
Adding correction of Check and Payload definitions
|
2019-06-16 17:58:31 -04:00 |
|
yaumn
|
863beaea92
|
First commit for module Nagios XI RCE
|
2019-06-16 22:10:32 +01:00 |
|
siberguvenlik
|
414c614b55
|
CVE-2019-12840 - Add Webmin 1.910 RCE Module
|
2019-06-16 11:26:00 -04:00 |
|
bwatters-r7
|
b9cefe1b79
|
Land #11958, abrt_raceabrt_priv_esc: Fix abrt package version check
Merge branch 'land-11958' into upstream-master
|
2019-06-13 14:02:15 -05:00 |
|
Matthew Kienow
|
d91459f2eb
|
Correct module CVE reference
|
2019-06-11 09:14:40 -04:00 |
|
Wei Chen
|
d74881a3c0
|
Update based on bcole's feedback
|
2019-06-10 12:12:49 -05:00 |
|
Wei Chen
|
caa9987a77
|
Register payload for cleanup
|
2019-06-10 11:20:25 -05:00 |
|
Wei Chen
|
d63484562c
|
Correct disclosure date
|
2019-06-10 11:14:41 -05:00 |
|
Wei Chen
|
12cfada465
|
Add Cisco Prime Infrastructure runrshell Privilege Escalation
|
2019-06-10 10:29:43 -05:00 |
|
Brendan Coles
|
8cac968acb
|
Fix abrt package version check
|
2019-06-10 02:21:10 +00:00 |
|
Pedro Ribeiro
|
6693e3e347
|
add cve to trueonline v2
|
2019-06-08 17:41:04 +07:00 |
|
Pedro Ribeiro
|
903ea5ebce
|
add cve to p660hn v1
|
2019-06-08 17:38:44 +07:00 |
|
Pedro Ribeiro
|
c763f84348
|
add cve to billion module
|
2019-06-08 17:37:05 +07:00 |
|
Wei Chen
|
4d6d06c9f9
|
Update disclosure date
|
2019-06-07 15:59:59 -05:00 |
|
Wei Chen
|
2053513dc5
|
Minotr update for cpi_tararchive_upload
|
2019-06-07 13:12:14 -05:00 |
|
Wei Chen
|
69492d2a25
|
Add Cisco Prime Infrastructure Health Monitor TarArchive Exploit
|
2019-06-07 03:08:57 -05:00 |
|