Brent Cook
8061cdf974
Land #12760 , improvements to linux/local/bpf_priv_esc module
2019-12-26 13:43:54 -06:00
Brendan Coles
a7b63557db
Notify operator that cleanup of crontab is required
2019-12-26 16:21:44 +00:00
Brent Cook
ce991071e4
Land #12524 , update most python code with python 3 compatibility
2019-12-23 14:49:08 -06:00
h00die
4f8382fc98
Land #12744 , rds lpe updates and improvements
2019-12-22 10:21:03 -05:00
h00die
4e1e8d344f
rds reliability, stability notes
2019-12-22 10:20:00 -05:00
h00die
7a027216cc
Land #12701 linux priv esc on reptile_cmd rootkit
2019-12-21 15:50:07 -05:00
Brendan Coles
c0da9e2202
Rename exploit/linux/local/rds_priv_esc -> exploit/linux/local/rds_rds_page_copy_user_priv_esc
2019-12-18 20:05:19 +00:00
Brent Cook
fde942bc37
Land #12517 , replace CheckScanner mixin with CheckModule, which works with anything
2019-12-16 17:40:10 -06:00
Christophe De La Fuente
42a60034f2
Land #12725 , Bash profile persistence module
2019-12-16 09:19:08 +01:00
h00die
1ff925eac9
Land #12727 , netfilter_priv_esc_ipv4 improvements
2019-12-15 07:07:40 -05:00
Brendan Coles
dd41892123
Update netfilter_priv_esc_ipv4 exploit
2019-12-15 07:17:42 +00:00
bluesentinelsec
c43330934b
New module: Bash Profile Persistence
2019-12-14 21:40:18 -05:00
Brendan Coles
d7f1c9a4a9
Land #12696 , Add AKA references to several modules
2019-12-12 15:28:21 +00:00
William Vu
f31930748b
Remove RHOST from solarwinds_lem_exec
...
This doubles as a test.
2019-12-11 13:42:41 -06:00
Rob Fuller
5eb90d758f
Update modules/exploits/linux/ssh/solarwinds_lem_exec.rb
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-12-11 13:44:37 -05:00
Rob Fuller
002b9e5b90
Fix typo and lacking RHOST
...
Kinda need a RHOST to use a RCE...
2019-12-11 12:17:53 -05:00
h00die
8cb58be4c0
style
2019-12-11 06:44:35 -05:00
Brendan Coles
1ebfe6c284
Add Reptile Rootkit reptile_cmd Privilege Escalation
2019-12-11 06:48:51 +00:00
h00die
3b2a54a599
add aka to some modules
2019-12-10 09:53:13 -05:00
William Vu
42c8420f5a
Fix style
2019-12-09 20:09:52 -06:00
William Vu
7b1d54fc26
Land #12577 , redis_unauth_exec fixes
2019-12-09 19:37:53 -06:00
William Vu
263c7bf235
Use CheckModule in pulse_secure_cmd_exec
2019-12-03 10:39:58 -06:00
Green-m
22412d4570
Fix bind error bug, and enhance check method.
2019-11-15 09:52:58 +08:00
Shelby Pace
baf27f9654
Land #12542 , add Bludit File Upload Exploit
2019-11-12 15:44:34 -06:00
William Vu
3c1fa90a75
Land #12515 , Pulse Secure VPN RCE
2019-11-12 02:55:01 -06:00
William Vu
a267ad9d64
Reference env(1) as the reason we have useful RCE
2019-11-12 02:17:58 -06:00
William Vu
8df559eceb
Update print to warning
2019-11-12 02:09:43 -06:00
wvu-r7
0c4580f254
Calibrate timeout for hax
...
Co-Authored-By: bcoles <bcoles@gmail.com >
2019-11-12 02:03:52 -06:00
William Vu
de72ed8545
Print our glorious success
2019-11-12 02:02:53 -06:00
William Vu
238c931fd3
Don't fail module if blocking through timeout
2019-11-12 01:55:56 -06:00
William Vu
d8e612726c
Note that an admin SID is required at present
2019-11-12 01:46:23 -06:00
William Vu
1573664c78
Reduce timeout for when the shell pops
2019-11-12 01:41:19 -06:00
William Vu
bc5b0645dd
Fix typo
2019-11-12 01:25:36 -06:00
William Vu
2c6c46701c
Update DefaultOptions
2019-11-12 01:23:53 -06:00
William Vu
8664ac9dd8
Add target print
2019-11-12 01:17:28 -06:00
William Vu
e9fb4a2528
Check for nil
...
Oops.
2019-11-12 01:10:26 -06:00
William Vu
f4c7690247
Print cmd/unix/generic command output, minus HTML
2019-11-12 01:08:56 -06:00
William Vu
09901fdf56
Clarify session cookie could be invalid
2019-11-12 01:08:25 -06:00
William Vu
5b825e8245
Readd cmd/unix/generic target with manual badchars
2019-11-12 01:08:09 -06:00
Wei Chen
717a31c7c3
Fix typos and format
2019-11-11 14:47:56 -06:00
William Vu
2b3c2b6af5
Land #12535 , module traits for some local exploits
2019-11-07 10:00:39 -06:00
h00die
9cf62d02f9
land #12492 coldfusion rds updates
2019-11-07 05:16:29 -05:00
dwelch-r7
876a307816
Land #9396 , Linux net snmpd rw access
2019-11-07 02:52:47 +00:00
dwelch-r7
2ab1b9071f
remove unsupported check
2019-11-07 01:34:16 +00:00
dwelch-r7
61dc3ad487
Replace manual escaping with shellescape function
2019-11-07 01:33:42 +00:00
Wei Chen
553601210a
Add CVE-2019-16113: Bludit Directory Traversal Image Upload Exploit
2019-11-05 08:57:15 -06:00
Brendan Coles
38498305d3
Add module notes for Reliability and Stability
2019-11-03 00:33:24 +00:00
Cristina
c9948c037d
Apply suggestions from code review
...
- Change executable in shebang from python3 to python
- Revert changes to files that will only run as python2
Co-Authored-By: acammack-r7 <adam_cammack@rapid7.com >
2019-11-01 19:20:22 -07:00
Brendan Coles
294cbcffb6
Land #12382 , Add Linux Micro Focus (HPE) Data Protector omniresolve Privesc (CVE-2019-11660)
2019-11-01 08:06:01 +00:00
bcoles
b08e031863
Update module description
2019-11-01 17:11:33 +11:00