h00die
0ac4d3d2e6
doc how to set permissions on service
2023-01-13 17:07:17 -05:00
Spencer McIntyre
3ddcf73c2b
Remove the QUICK option altogether
...
Use blocks to check whether each service is exploitable as they are
enumerated. With this change, it is the service and path enumeration
halts once an exploitable one is found that yields a session.
Also all files are registered for cleanup.
2023-01-13 17:06:42 -05:00
h00die
90a12cf3b0
unquoted service path tweaks
2023-01-13 17:06:42 -05:00
h00die
c52eb09cbb
unquoted service path tweaks
2023-01-13 17:06:42 -05:00
Christophe De La Fuente
e7e2849f6d
Land #17183 , Zimbra fixes
2022-12-06 15:38:37 +01:00
Christophe De La Fuente
d3057f15b2
Land #17275 , Add Exploit For CVE-2022-41082 (ProxyNotShell)
2022-11-30 18:16:19 +01:00
Spencer McIntyre
009c6c5350
Add the MaxBackendRetries datastore option
2022-11-28 09:45:04 -05:00
Ron Bowes
28a68ede8c
Merge branch 'master' into zimbra-fixes
2022-11-23 12:50:56 -08:00
Spencer McIntyre
3f58bfe11e
Check that the target is Exchange Server 2019
2022-11-23 10:47:10 -05:00
h00die
181b8e4eea
review comments
2022-11-21 15:53:37 -05:00
h00die
d4536b24a6
remote control collection rce
2022-11-21 15:53:37 -05:00
Spencer McIntyre
ed99f2f67f
Bypass EEMS M1
2022-11-21 11:13:16 -05:00
Spencer McIntyre
bc89721d7a
Add module docs, fix ProxyShell versions
2022-11-18 17:42:27 -05:00
Ron Bowes
3ac3fa6c32
Move the Zimbra Slapper doc to the right folder (Windows -> Linux)
2022-10-25 09:51:27 -07:00
h00die
05b80631f3
update remote mouse version checks
2022-10-17 15:30:17 -04:00
h00die
08deb21ae3
update remote mouse version checks
2022-10-17 15:29:10 -04:00
JustAnda7
412a07df54
Fixed #16674
2022-10-07 14:35:21 -04:00
space-r7
63af4e3702
Land #17067 , add remote mouse rce
2022-10-04 11:40:33 -05:00
h00die
68b2aec6fb
review comments
2022-10-03 15:25:53 -04:00
h00die
391a27b08c
remote mouse rce
2022-09-27 16:37:42 -04:00
h00die
a39b1c9fe5
msftidy_docs
2022-09-26 15:56:43 -04:00
h00die
61f576d3e1
mobile mouse server exploit
2022-09-26 15:45:42 -04:00
Grant Willcox
0908006466
Land #16985 , wifi mouse rce - CVE-2022-3218
2022-09-23 14:46:49 -05:00
Grant Willcox
b62f163696
Update documentation on module and exploit a little more to make things a bit clearer
2022-09-23 14:08:18 -05:00
h00die
eb516f402e
wifi mouse doc updates
2022-09-21 16:38:50 -04:00
h00die
32402c0e6d
wifi mouse doc updates
2022-09-21 16:35:08 -04:00
Grant Willcox
605db0160d
Fix up documentation
2022-09-21 15:02:04 -05:00
h00die
271171f6d2
unified now with invisible feature
2022-09-18 19:02:59 -04:00
h00die
66bbe98f5f
wifi remote with better cmd stagers
2022-09-09 05:57:36 -04:00
h00die
ae91cfa9c5
unified_remote exploit
2022-09-08 17:09:31 -04:00
h00die
c6d453f5b9
fix docs
2022-09-05 08:23:40 -04:00
h00die
3f7e0667f6
wifi mouse rce
2022-09-05 08:16:49 -04:00
Spencer McIntyre
ae5a9bd41b
Land #16734 , Add rtf support to cve-2022-30190
...
Add rtf support to cve-2022-30190 AKA Follina
2022-08-25 17:26:46 -04:00
Spencer McIntyre
68eae1664e
Tweak the follina docs
2022-08-25 17:10:59 -04:00
Spencer McIntyre
07fdc1f1ec
Land #16907 , ms10_092_schelevator: Cleanup
2022-08-22 11:53:02 -04:00
Grant Willcox
97bce45e69
Land #16915 , Add exploit for CVE-2022-23277 (Exchange RCE)
2022-08-19 11:11:46 -05:00
bcoles
666a3efcfd
ms10_092_schelevator: Cleanup
2022-08-19 15:19:28 +10:00
Christophe De La Fuente
d49b74d164
Land #16809 , Add exploit module for Advantech iView command injection - CVE-2022-2143
2022-08-18 17:19:14 +02:00
Spencer McIntyre
7c1dd17c86
Add a missing verison, fix typos
2022-08-17 17:36:31 -04:00
bwatters
115955591b
Fix up the Unicode coversions and update docs
2022-08-17 13:21:56 -05:00
Spencer McIntyre
62ab42b797
Update vulnerable version numbers and docs
2022-08-17 08:55:46 -04:00
Spencer McIntyre
0e148d6ba4
Update and rename the module
2022-08-09 13:32:09 -04:00
Ron Bowes
be25e1fc77
Add documentation
2022-08-05 13:55:05 -05:00
space-r7
0334beada2
Land #16758 , add ManageEngine ADAudit Plus exploit
2022-08-05 12:19:42 -05:00
space-r7
4202502992
make some prints vprints, add steps
2022-08-05 11:34:46 -05:00
Ron Bowes
7c21c57564
Merge branch 'master' into manageengine-adauditplus-cve-2022-28219
2022-08-04 14:07:50 -07:00
Grant Willcox
ada3be8f7b
Update options section in documentation
2022-08-02 14:13:25 -05:00
Grant Willcox
f0e62de46a
Add CVE-2022-35405 docs and module
2022-08-02 11:57:56 -05:00
Ron Bowes
b4b5f31c3d
Add documentation
2022-07-26 10:48:18 -07:00
space-r7
e1b0e871b3
add finished module and docs
2022-07-21 18:33:56 -05:00