Spencer McIntyre
|
edee95bbb2
|
Update the check to not fail if a COOKIE is used
|
2021-06-10 11:29:07 -04:00 |
|
Spencer McIntyre
|
3afe3ebfa3
|
Add the module docs
|
2021-06-08 15:23:24 -04:00 |
|
Spencer McIntyre
|
78f97d2fa7
|
Land #15281, Add Cisco HyperFlex exploit
|
2021-06-03 17:24:27 -04:00 |
|
Shelby Pace
|
8b737c2c60
|
Land #15231, add SuiteCRM log file rce
|
2021-06-03 09:11:00 -05:00 |
|
William Vu
|
6efd312430
|
Add Cisco HyperFlex HX Data Platform exploit
CVE-2021-1497
CVE-2021-1498
|
2021-06-03 00:43:56 -05:00 |
|
William Vu
|
6498554084
|
Clean up NetMotion Mobility exploit and docs
Refactor target selection once again.
|
2021-06-02 23:47:01 -05:00 |
|
Shelby Pace
|
598f925fd3
|
remove extra spaces
|
2021-06-01 11:37:45 -05:00 |
|
h00die
|
825cc9d284
|
upgraded to meterp
|
2021-05-29 15:55:24 -04:00 |
|
h00die
|
721a47ad7f
|
cacti 1.2.12 sql to rce
|
2021-05-29 15:55:24 -04:00 |
|
Shelby Pace
|
8e4a33f2a2
|
Land #15223, move TokenMagic validation logic
|
2021-05-24 14:51:13 -05:00 |
|
M. Cory Billington
|
e62efe0690
|
Added module and documentation for SuiteCRM Log File RCE
|
2021-05-22 00:11:19 -05:00 |
|
bwatters
|
8e1391f098
|
Land #15216, Fix targeting for CVE-2021-21551
Merge branch 'land-15216' into upstream-master
|
2021-05-21 14:56:08 -05:00 |
|
bwatters
|
72375d1f67
|
Land #15024, Add RCE Exploit For CVE-2020-0796 (SMBGhost)
Merge branch 'land-15024' into upstream-master
|
2021-05-20 17:02:04 -05:00 |
|
Spencer McIntyre
|
a6f650a1a3
|
Add a clear warning about instability due to KPP
|
2021-05-20 17:28:14 -04:00 |
|
bwatters
|
a89fffade1
|
Update check method and move it to earlier in the module to prevent crashing
on windows 7 sp0 targets.
|
2021-05-19 15:58:40 -05:00 |
|
Spencer McIntyre
|
56388cd696
|
Land #15146, Add support for extra OSes for CVE-2021-3156 (Baron Samedit)
|
2021-05-18 18:02:30 -04:00 |
|
Spencer McIntyre
|
a8a1cf75b8
|
Reorder the Fedora targets to be descending
|
2021-05-18 18:02:12 -04:00 |
|
Grant Willcox
|
7a6bf2efbc
|
Land #15210, Add ssl setup documentation for gitlab
|
2021-05-18 15:05:45 -05:00 |
|
Spencer McIntyre
|
78d47b11f2
|
Add targeting for Windows 10 v21H1
|
2021-05-18 12:56:02 -04:00 |
|
Alan Foster
|
2b837a9d11
|
Add ssl setup documentation for gitlab
|
2021-05-17 23:59:08 +01:00 |
|
William Vu
|
1f9a3d99bb
|
Add module doc
|
2021-05-17 13:58:03 -05:00 |
|
Grant Willcox
|
24352567e7
|
Add final touches to documentation for code highlights and minor fixes
|
2021-05-14 17:47:38 -05:00 |
|
Jack Heysel
|
c8b62a1ff9
|
Fixed check method nil check, update numberd list in docs, added wfsdelay warning when in dll mode
|
2021-05-14 17:47:31 -05:00 |
|
Jack Heysel
|
950bbad852
|
Removed nil script check, updated docs
|
2021-05-14 17:47:15 -05:00 |
|
Jack Heysel
|
eb4573164b
|
Addressed comments
|
2021-05-14 17:46:26 -05:00 |
|
Jack Heysel
|
d23df37b62
|
Responded to comments, refactored to remove duplicate code
|
2021-05-14 17:44:08 -05:00 |
|
Jack Heysel
|
fab3a9afc8
|
Added wfsdelay, updated docs
|
2021-05-14 17:44:07 -05:00 |
|
Jack Heysel
|
1eab94cc26
|
beta draft
|
2021-05-14 17:43:44 -05:00 |
|
bwatters
|
8792febcf8
|
Land #15190, Add Exploit For CVE-2021-21551 (Dell DBUtil_2_3 IOCTL)
Merge branch 'land-15190' into upstream-master
|
2021-05-14 13:55:12 -05:00 |
|
Spencer McIntyre
|
d990e884af
|
Add and test even more targets
|
2021-05-13 17:27:58 -04:00 |
|
Spencer McIntyre
|
7d841a0f79
|
Add a target for Windows 7 x64
|
2021-05-13 14:24:15 -04:00 |
|
Spencer McIntyre
|
477749f77f
|
Refactor the code to be reusable and add docs
|
2021-05-12 16:36:17 -04:00 |
|
adfoster-r7
|
1a321e3cc1
|
Land #15164, Converts Cockpit CMS to use new CookieJar API
|
2021-05-12 19:25:47 +01:00 |
|
Alan Foster
|
5a0360228f
|
Update cockpit cms module
|
2021-05-12 17:20:31 +01:00 |
|
Grant Willcox
|
5290549cac
|
Land #15185, Add CVE-2021-22204 ExifTool ANT perl injection
|
2021-05-11 16:41:44 -05:00 |
|
Justin Steven
|
fa73c0af3e
|
Add CVE-2021-22204 ExifTool ANT perl injection
|
2021-05-11 12:02:12 +10:00 |
|
Shelby Pace
|
b9525c581d
|
Land #15102, add GateKeeper Bypass exploit
|
2021-05-07 09:10:10 -05:00 |
|
William Vu
|
637e9cff48
|
Update vmware_vrops_mgr_ssrf_rce documentation
|
2021-05-06 18:30:20 -05:00 |
|
Ashley Donaldson
|
5dc8d0e684
|
Added automatic cleanup for exploit scripts that modify /etc/passwd
|
2021-05-06 21:50:03 +10:00 |
|
Tim W
|
410c37b2c8
|
add documentation
|
2021-05-04 21:02:53 +01:00 |
|
Christophe De La Fuente
|
7f667fab4e
|
Update documentation
|
2021-05-04 14:12:48 +02:00 |
|
Mehmet INCE
|
e3662034ea
|
Update documentation/modules/exploit/linux/http/gravcms_exec.md
Making consistent with documentation template.
Co-authored-by: cdelafuente-r7 <56716719+cdelafuente-r7@users.noreply.github.com>
|
2021-05-03 20:38:17 +03:00 |
|
Mehmet INCE
|
686f8c309a
|
Fix the module documentation
|
2021-05-03 12:17:24 +03:00 |
|
Mehmet INCE
|
9e04805c0e
|
Adding check method to gravcms exec
|
2021-05-03 11:14:43 +03:00 |
|
Mehmet INCE
|
e3d05395de
|
Add GravCMS exec
|
2021-05-03 11:14:42 +03:00 |
|
Ashley Donaldson
|
0435e281d9
|
Updated CVE-2021-3156 documentation to reflect code changes.
|
2021-05-03 16:45:50 +10:00 |
|
William Vu
|
a2047071e2
|
Refine vmware_vrops_mgr_ssrf_rce module doc again
I've used this Markdown trick before, but I wasn't sure it'd work here.
|
2021-05-02 21:18:53 -05:00 |
|
William Vu
|
8b4a763eb1
|
Add words to vmware_vrops_mgr_ssrf_rce module doc
I had dropped this sentence for brevity, but now I realize it's useful.
|
2021-05-02 17:24:58 -05:00 |
|
Brendan Coles
|
4a93f15c80
|
Land #15136, Set microfocus_ucmdb_unauth_deser default payload to reverse_python
|
2021-05-02 10:27:05 +00:00 |
|
Pedro Ribeiro
|
e6b605369e
|
UCMDB: remove warning from docs and change Linux target to reverse_python
|
2021-05-02 16:53:02 +07:00 |
|