Spencer McIntyre
|
6965115c8e
|
Land #16786, Zyxel Firewall LPE (CVE-2022-30526)
|
2022-08-31 08:40:23 -04:00 |
|
Ron Bowes
|
5d7fb283b7
|
Capture the command output
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
6564ea9719
|
Change Vulnerable to Appears
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
2cde5f6364
|
Typo / compile error
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
caff6a53f5
|
Add a CVE and better description
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
ea581482d4
|
Remove the commented-out CVE, it's making lint sad
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
6e8d04ddc9
|
Add a note that IOCs show up in logs
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
cc27f563ec
|
Small cleanup
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
5e1888ee46
|
Cleanups
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
0fd61e859d
|
Make lint happy
|
2022-08-05 13:55:05 -05:00 |
|
Ron Bowes
|
bba4a23f65
|
Add zimbra_slapper_priv_esc module (privilege escalation in Zimbra, currently 0-day)
|
2022-08-05 13:55:05 -05:00 |
|
Spencer McIntyre
|
0b9e1bbbb3
|
Fix "can not" to "cannot"
|
2022-08-03 17:45:06 -04:00 |
|
Spencer McIntyre
|
207862a810
|
Update module metadata now that it's disclosed
|
2022-08-02 12:13:34 -04:00 |
|
Spencer McIntyre
|
ef8fe215e1
|
Finish up an exploit for the first bug
|
2022-08-02 12:13:28 -04:00 |
|
Jake Baines
|
cf54762191
|
Initial commit of CVE-2022-30526 LPE
|
2022-07-19 03:29:11 -07:00 |
|
sjanusz
|
bc489fef91
|
Update PiHole module to not wait for sudo input
|
2022-05-04 17:24:43 +01:00 |
|
Grant Willcox
|
e2c6c36b2b
|
Land #1642, Add module for cve-2022-0995
|
2022-04-21 09:12:47 -05:00 |
|
bwatters
|
9cba9576cd
|
Keep code reusable and fix some logical complexities
|
2022-04-21 07:44:40 -05:00 |
|
Grant Willcox
|
69b54c8448
|
Add in additional validation to check methods to address bcoles's comments and also to prevent issues with fail_with being used inside a check method
|
2022-04-20 19:50:08 -05:00 |
|
Grant Willcox
|
f33e3f45c1
|
RuboCop compliance for PacketStorm
|
2022-04-20 19:09:14 -05:00 |
|
Grant Willcox
|
78d4ac8592
|
Update module reliability and also fix issues from bcoles's review
|
2022-04-20 19:04:27 -05:00 |
|
bwatters
|
26f9175816
|
Update c source with argc check and CRASH notes for module
|
2022-04-20 17:37:48 -05:00 |
|
bwatters
|
d9a241defb
|
Fix overzealous source code edit and some version copy/pasta errors
|
2022-04-20 14:31:32 -05:00 |
|
Brendan Coles
|
94ed9ae28b
|
Modules: Prefer CVE references over cve.mitre.org URL references
|
2022-04-19 20:42:23 +00:00 |
|
Grant Willcox
|
b83a4b2a7a
|
Add in fixes to module and documentation from final review
|
2022-04-14 12:45:15 -05:00 |
|
bwatters
|
f32443b477
|
Update with debug source code and options, cleanup module code per gwillcox-r7
|
2022-04-14 10:25:55 -05:00 |
|
bwatters
|
42a56b2800
|
Remove the thing I commented out.....
|
2022-04-12 21:19:20 -05:00 |
|
bwatters
|
147d6e1df7
|
Added docs, reverted strip_comments, rubocop'd
|
2022-04-12 21:14:11 -05:00 |
|
bwatters
|
96d86944da
|
Added precompiled binary and option to strip output, fixed comment-strip bug
|
2022-04-07 17:09:35 -05:00 |
|
bwatters
|
db89fc5e7a
|
Add module for cve-2022-0995
|
2022-04-06 13:35:14 -05:00 |
|
space-r7
|
b747e55dda
|
Land #16303, add Dirty Pipe exploit
|
2022-03-10 11:16:28 -06:00 |
|
space-r7
|
872b9c9a7c
|
modify docs to reflect changes, remove 'return'
|
2022-03-10 10:39:32 -06:00 |
|
space-r7
|
2f86c78c91
|
remove check mode, check by kernel version only
|
2022-03-10 10:02:05 -06:00 |
|
Tim W
|
472c26924a
|
fix kernel version check
|
2022-03-10 07:47:58 +00:00 |
|
bwatters
|
5505d05d04
|
Maybe actually fix arch check this time...
|
2022-03-09 11:06:26 -06:00 |
|
Tim W
|
955cc9c986
|
fix cross compiling
|
2022-03-09 06:59:25 +00:00 |
|
Tim W
|
b5e88f24df
|
feedback from space
|
2022-03-09 06:06:53 +00:00 |
|
bwatters
|
ae0f1729c1
|
Update arch check
|
2022-03-08 18:21:34 -06:00 |
|
bwatters
|
fb7f2ba326
|
Fix arch check and on_session cd
|
2022-03-08 13:16:32 -06:00 |
|
Tim W
|
a195c65121
|
change default suid binary from /usr/bin/sudo to /bin/passwd
|
2022-03-08 16:37:07 +00:00 |
|
Tim W
|
300ab51079
|
feedback from jvoisin
|
2022-03-08 16:22:31 +00:00 |
|
Tim W
|
0c7806222f
|
msftidy
|
2022-03-08 10:28:04 +00:00 |
|
Tim W
|
a614f9c2aa
|
add a description and PrependFork
|
2022-03-08 10:17:06 +00:00 |
|
Tim W
|
7ca6a28c05
|
embed payload inside exploit and add check method
|
2022-03-08 09:51:49 +00:00 |
|
Tim W
|
5bd48d0a7d
|
initial commit of dirtypipe
|
2022-03-07 15:49:27 +00:00 |
|
Spencer McIntyre
|
6be3443680
|
Land #16103, LPE in polkit's pkexec (CVE-2021-4034)
|
2022-03-03 09:24:11 -05:00 |
|
Spencer McIntyre
|
0463373756
|
Simplify finding pkexec
|
2022-03-03 09:19:45 -05:00 |
|
bwatters
|
e649fe3f69
|
Fix some markdown issues, update docs and add arch check for payloads
|
2022-03-02 16:30:52 -06:00 |
|
bwatters
|
06e897436c
|
Add Fedora results to docs and some minor final cleanup
|
2022-03-02 09:12:01 -06:00 |
|
bwatters
|
58aed837b2
|
Update docs and options
|
2022-03-01 14:48:48 -06:00 |
|