Martin Sutovsky
|
ee3058bf92
|
Removes moved_from
|
2025-10-29 15:14:29 +01:00 |
|
Martin Sutovsky
|
b167a2bc7d
|
Adds moved_from clause
|
2025-10-29 07:58:50 +01:00 |
|
Martin Sutovsky
|
44c3d9b5db
|
Fixes documentation, removes unused parameters, code cleanup
|
2025-10-29 07:58:47 +01:00 |
|
msutovsky-r7
|
65f764e8bc
|
Corrects CheckCode from Vulnerable to Appears
Co-authored-by: Julien Voisin <jvoisin@users.noreply.github.com>
|
2025-10-29 07:57:20 +01:00 |
|
Martin Sutovsky
|
5bf842c15e
|
Moves module to persistence category, docs reformat
|
2025-10-29 07:57:19 +01:00 |
|
Martin Sutovsky
|
547b318848
|
Moves linqpad deserialization to persistence category
|
2025-10-29 07:56:49 +01:00 |
|
msutovsky-r7
|
d839a84a12
|
Land #20631, moves windows registry module into persistence category
update windows registry to persistence mixin
|
2025-10-27 14:57:48 +01:00 |
|
Michael MacFadden
|
b481b9ef7b
|
gitea_git_fetch_rce aarch64 payload support
Add support for the Linux Dropper to use payloads targeted to ARCH_AARCH64
|
2025-10-26 19:19:11 -05:00 |
|
Brendan
|
d1c9410a95
|
Merge pull request #20594 from HamzaSahin61/feat/redoc-exposed-scanner
auxiliary(scanner/http/redoc_exposed): detect exposed ReDoc API docs UI
|
2025-10-24 11:19:13 -05:00 |
|
msutovsky-r7
|
d8357ce329
|
Land #20564, adds persistence suggester module
persistence suggester
|
2025-10-24 15:29:54 +02:00 |
|
h00die
|
0f26c9316a
|
registry persistence peer review
|
2025-10-23 17:44:22 -04:00 |
|
Martin Sutovsky
|
3c11db422a
|
Adds safe navigation operator
|
2025-10-23 14:41:18 +02:00 |
|
Martin Sutovsky
|
51e3a2d0c5
|
Changes return value from nil to [] in enum_registry_values
|
2025-10-23 13:53:57 +02:00 |
|
adfoster-r7
|
f24552cdfd
|
Merge pull request #20632 from h00die/linqpad_cleanup
Linqpad cleanup
|
2025-10-22 13:23:32 +01:00 |
|
msutovsky-r7
|
e5ee4d5384
|
Land #20630, adds authenticated RCE module for Vvveb CMS (CVE-2025-8518)
Add Vvveb CMS Authenticated RCE (CVE-2025-8518)
|
2025-10-22 09:27:59 +02:00 |
|
Maksim Rogov
|
ff73363159
|
Update modules/exploits/multi/http/vvveb_auth_rce_cve_2025_8518.rb
Co-authored-by: msutovsky-r7 <martin_sutovsky@rapid7.com>
|
2025-10-21 19:10:16 +03:00 |
|
vognik
|
45a87eaaca
|
small fixes
|
2025-10-20 09:41:48 -07:00 |
|
vognik
|
74c7f98ad9
|
code review changes from @msutovsky-r7
|
2025-10-20 09:00:24 -07:00 |
|
Valentin Lobstein
|
97b58f9372
|
easy-fix: Fix typo in modules/exploits/unix/http/freepbx_unauth_sqli_to_rce
|
2025-10-20 14:29:19 +02:00 |
|
h00die
|
ef9300870a
|
linqpad persistence cleanup
|
2025-10-19 10:05:48 -04:00 |
|
h00die
|
287cba7436
|
linqpad persistence cleanup
|
2025-10-19 10:05:36 -04:00 |
|
h00die
|
bc9bd4b62c
|
windows registry persistence mixin conversion
|
2025-10-19 09:36:59 -04:00 |
|
vognik
|
9ad83f6454
|
Add Vvveb CMS Authenticated RCE (CVE-2025-8518)
|
2025-10-18 17:12:05 -07:00 |
|
Diego Ledda
|
644bcfabbb
|
Merge pull request #20522 from h00die/modern_persistence_sysvinit
update systemvinit to persistence mixin
|
2025-10-16 16:35:16 +02:00 |
|
h00die
|
55583bd2c8
|
review for sysv persistence
|
2025-10-14 19:30:06 -04:00 |
|
h00die
|
68c74e1bcf
|
remove unnecessary writabledir variable and check
|
2025-10-13 19:54:05 -04:00 |
|
h00die
|
f3219668e0
|
remove unnedcessary sudo
|
2025-10-13 17:48:02 -04:00 |
|
h00die
|
1e9dd04505
|
update periodic_script to new persistence mechanism
|
2025-10-13 17:48:00 -04:00 |
|
h00die
|
7a8189f976
|
additional check
|
2025-10-13 14:07:18 -04:00 |
|
h00die
|
c0b09693e3
|
systemv updated with mixin udpates
|
2025-10-13 13:42:41 -04:00 |
|
h00die
|
1a13d39a4d
|
use attck ref in sysvinit persistence module
|
2025-10-13 13:42:41 -04:00 |
|
h00die
|
058e858e82
|
update systemvinit to persistence mixin
|
2025-10-13 13:42:41 -04:00 |
|
bcoles
|
93b3ec34ac
|
exploit/multi/local/periodic_script_persistence: Unset DefaultTarget
|
2025-10-11 21:47:11 +11:00 |
|
HamzaSahin61
|
33244f66f0
|
style: rubocop auto-corrections + add Notes metadata
|
2025-10-09 23:41:11 +03:00 |
|
Brendan
|
91c0adb17f
|
Merge pull request #20585 from vognik/CVE_2025_60787
Add MotionEye Authenticated RCE (CVE-2025-60787)
|
2025-10-09 13:50:25 -05:00 |
|
Spencer McIntyre
|
27d0e638ed
|
Merge pull request #20546 from dwelch-r7/fix-ssh-login-pubkey
Fix ssh login pubkey module
|
2025-10-09 14:24:09 -04:00 |
|
Vognik
|
267a26b763
|
code review changes from smcintyre-r7@
|
2025-10-09 21:51:31 +04:00 |
|
Dean Welch
|
8c5c395ce7
|
Fix ssh login pubkey module
|
2025-10-09 12:36:00 +01:00 |
|
jheysel-r7
|
a8ec46f2b2
|
Merge pull request #20579 from nakkouchtarek/listmonk_env_disclosure
Add Listmonk Template Function Environment Variable Disclosure Auxiliary Module (CVE-2025-49136)
|
2025-10-08 14:00:37 -07:00 |
|
Tarek Nakkouch
|
7c840a1bac
|
Add Listmonk environment disclosure auxiliary module
|
2025-10-08 21:02:24 +01:00 |
|
Brendan
|
10d1f53692
|
Merge pull request #19975 from dledda-r7/feat/split-stdapi
Split Stdapi
|
2025-10-08 13:00:04 -05:00 |
|
HamzaSahin61
|
4577a3d735
|
Update redoc_exposed.rb
|
2025-10-08 20:56:53 +03:00 |
|
Spencer McIntyre
|
7b2643ce5d
|
Remove a CVE that was mistakenly added
|
2025-10-08 10:45:59 -04:00 |
|
HamzaSahin61
|
33825d06ec
|
Update redoc_exposed.rb
|
2025-10-08 03:45:12 +03:00 |
|
jheysel-r7
|
eeaf760948
|
Merge pull request #20595 from zeroSteiner/fix/add-missing-cves
Add Missing CVE Data To Modules In Bulk
|
2025-10-07 15:28:37 -07:00 |
|
HamzaSahin61
|
fc35a8a32f
|
Update redoc_exposed.rb
|
2025-10-08 01:09:29 +03:00 |
|
Spencer McIntyre
|
9dc5696cc4
|
Update dash characters in module references
|
2025-10-07 14:03:32 -04:00 |
|
Spencer McIntyre
|
fd21209e4d
|
Add missing CVEs from VulnCheck
|
2025-10-07 13:59:13 -04:00 |
|
Spencer McIntyre
|
17c5b3707a
|
Add missing module notes
|
2025-10-07 13:59:13 -04:00 |
|
Vognik
|
5cb1968c42
|
small fixes
|
2025-10-07 08:49:24 +04:00 |
|