Spencer McIntyre
a32d4c2a20
Land #13875 , CVE-2020-8010 & CVE-2020-8012
2020-07-31 09:08:36 -04:00
Spencer McIntyre
2fb89f47c2
Apply suggestions from msftidy_docs for nimcontroller_bof
2020-07-31 09:08:13 -04:00
gwillcox-r7
2ef43ab7d0
Land #13920 , CVE-2020-1147 SharePoint Deserialization RCE
2020-07-29 16:10:32 -05:00
Spencer McIntyre
4fa657d6eb
Fix a bunch of documentation typos and minor code cleanups
2020-07-29 16:30:44 -04:00
Spencer McIntyre
a886177b96
Land #13837 , Add FreeBSD ip6_setpktopt Use-After-Free Privilege Escalation module
2020-07-29 15:40:47 -04:00
Spencer McIntyre
7af4297e86
Add the exploit for CVE-2020-1147
2020-07-29 11:58:38 -04:00
Shelby Pace
18b5ddbfdc
Land #13891 , add Baldr file upload rce
2020-07-28 17:20:21 -05:00
Brendan Coles
95b99ce5cf
Use Msf::Exploit::Remote::AutoCheck
2020-07-26 08:04:37 +00:00
Brendan Coles
0ac11a58da
Remove indentation
2020-07-26 08:04:37 +00:00
Brendan Coles
fbc77f7576
Add FreeBSD ip6_setpktopt Use-After-Free Privilege Escalation module
2020-07-26 08:04:37 +00:00
Ege Balcı
7985eafda0
Add Baldr Botnet Panel RCE Module
2020-07-24 07:45:43 +03:00
Shelby Pace
bf4d0bf6ee
Land #13828 , add Zentao Pro rce
2020-07-22 09:42:11 -05:00
Shelby Pace
6c066a97ed
add bcoles suggestions
2020-07-22 09:39:17 -05:00
wetw0rk
3d0a7313ef
nimsoft sploit
2020-07-21 11:19:23 -05:00
wetw0rk
d7ae3bd20c
CVE-2020-8010 & CVE-2020-8012 aka Sing About Me, I'm Dying Of Thirst
2020-07-19 17:57:55 -05:00
William Vu
d5d4716b1c
Update TMSH escape reliability notes
...
What's strange is that if the stars align, like if the system has been
"used" enough, the exploit is incredibly reliable. Maybe my test
environment is bonkers.
2020-07-17 06:26:00 -05:00
William Vu
c082ccd337
Make Meterpreter the default target
2020-07-17 06:10:53 -05:00
William Vu
1ae689ce5f
Improve robustness by refactoring error handling
...
tmshCmd.jsp is extremely unreliable!
2020-07-17 05:23:42 -05:00
bwatters
eb863048f0
Land #13741 , CVE-2020-5741: Plex rce on Windows
...
Merge branch 'land-13741' into upstream-master
2020-07-16 10:20:50 -05:00
bwatters
ceea94c368
Update docs for installation of target software
2020-07-16 10:16:48 -05:00
kalba-security
2d3588c0ad
Add suggestions from code review
2020-07-13 12:51:57 -04:00
kalba-security
df42399f61
Add installation instructions to docs
2020-07-09 17:20:07 -04:00
kalba-security
36397a3e8f
Add cmdstager support
2020-07-09 15:21:12 -05:00
kalba-security
3eceeca911
Add Pandora FMS Events Remote Code Execution module and docs
2020-07-09 15:21:12 -05:00
kalba-security
6c4f975f97
Fix linting
2020-07-08 16:51:55 -04:00
kalba-security
470a0c9423
Add installation instructions to docs
2020-07-08 16:50:10 -04:00
kalba-security
1f631e20ad
Add zentao_pro_rce Windows exploit and docs
2020-07-08 15:13:45 -04:00
William Vu
3ec597ce38
Update module doc
2020-07-07 12:12:38 -05:00
William Vu
ac3b31a911
Add module doc
2020-07-06 18:07:52 -05:00
Brendan Coles
f9a5de87f8
Land #13789 , Add OpenSIS Unauthenticated PHP Code Execution module
2020-07-04 15:49:45 +00:00
h00die
89332d0056
native python for plex unpickle
2020-07-03 19:37:18 -04:00
EgiX
d62b8d16c6
Update opensis_chain_exec.md
2020-07-03 17:43:10 +02:00
EgiX
ab703f376b
Create opensis_chain_exec.md
2020-07-01 23:51:17 +02:00
William Vu
08c1402be9
Land #13733 , AnyDesk GUI CVE-2020-13160 exploit
2020-07-01 14:47:07 -05:00
Spencer McIntyre
a27bf9df38
Fix some grammatical mistakes and set a default target for anydesk
2020-07-01 15:27:33 -04:00
h00die
a99a3c2d75
working albumn_name length thanks to acammack
2020-06-30 00:28:57 -04:00
Shelby Pace
2b1af9acaa
Land #13610 , add atutor auth dir trav / rce
2020-06-29 11:58:34 -05:00
William Vu
3ba619acee
Land #13521 , Bolt CMS authenticated RCE
2020-06-28 23:50:53 -05:00
William Vu
b81629d099
Clean up module
2020-06-28 23:07:10 -05:00
William Vu
72dbbedcfc
Clean up module doc
2020-06-26 11:25:41 -05:00
gwillcox-r7
ad47a2e9c9
Land #13770 , Update IBM DRM modules with URL and correct versions
2020-06-26 10:34:12 -05:00
Pedro Ribeiro
9995d13316
Update IBM DRM RCE docs
2020-06-26 11:29:59 +07:00
Pedro Ribeiro
eb954da04d
Fix IBM DRM SSH docs
2020-06-26 11:26:47 +07:00
William Vu
7273ac1a92
Move module to unix/webapp
2020-06-25 12:44:42 -05:00
William Vu
c03c580d12
Merge remote-tracking branch 'upstream/master' into pr/13521
2020-06-25 12:21:57 -05:00
Christophe De La Fuente
77276ee3e2
Land #13604 , Ignition Automation RCE module
2020-06-25 18:14:57 +02:00
Christophe De La Fuente
2203310d64
Remove spaces at EOL
2020-06-25 18:12:29 +02:00
Pedro Ribeiro
b630524703
Update inductive_ignition_rce.md
2020-06-25 22:48:35 +07:00
h00die
94cc286689
update docs and 401 handling code
2020-06-24 21:05:23 -04:00
gwillcox-r7
0dde85f562
Land #13739 , Cisco AnyConnect Priv Esc via Path Traversal
2020-06-24 17:47:52 -05:00