bwatters
|
fb658fbb13
|
Land #16245, pfSense Authenticated File Write (CVE-2021-41282)
Merge branch 'land-16245' into upstream-master
|
2022-03-03 15:08:34 -06:00 |
|
Spencer McIntyre
|
6be3443680
|
Land #16103, LPE in polkit's pkexec (CVE-2021-4034)
|
2022-03-03 09:24:11 -05:00 |
|
bwatters
|
e649fe3f69
|
Fix some markdown issues, update docs and add arch check for payloads
|
2022-03-02 16:30:52 -06:00 |
|
bwatters
|
06e897436c
|
Add Fedora results to docs and some minor final cleanup
|
2022-03-02 09:12:01 -06:00 |
|
bwatters
|
58aed837b2
|
Update docs and options
|
2022-03-01 14:48:48 -06:00 |
|
bwatters
|
0081811c52
|
Land #16185, Firefox CVE-2020-26950 use after free browser exploit
Merge branch 'land-16185' into upstream-master
|
2022-02-28 14:38:23 -06:00 |
|
Jake Baines
|
65e16a1a72
|
Initial implementation of pfSense auth file creation bug (CVE-2021-41282)
|
2022-02-27 18:12:54 -08:00 |
|
Tim W
|
579811418f
|
update documentation with note about Firefox 82.0.1
|
2022-02-26 12:35:38 +00:00 |
|
bwatters
|
ecaf8b1ba9
|
Land #16204, Hikvision Unauthenticated RCE (CVE-2021-36260)
Merge branch 'land-16204' into upstream-master
|
2022-02-25 16:37:08 -06:00 |
|
bwatters
|
b69db83398
|
Land #16202, Add exploit for CVE-2022-21882 (Win32k LPE)
Merge branch 'land-16202' into upstream-master
|
2022-02-25 15:55:48 -06:00 |
|
Grant Willcox
|
217afa0f3b
|
Land #16190, Axis Camera App RCE (No CVE)
|
2022-02-25 11:35:03 -06:00 |
|
Jake Baines
|
d055a7d811
|
Altered some randomization, the json extracted by check, and fixed some wording
|
2022-02-24 18:48:21 -08:00 |
|
Spencer McIntyre
|
544f8e161a
|
Land #16164, Create Module For CVE-2021-42321
|
2022-02-24 11:36:12 -05:00 |
|
Jake Baines
|
e1616a520f
|
Fixed a couple of typos. Changed a CheckCode. Randomized the replaced tmp file name
|
2022-02-24 06:38:36 -08:00 |
|
Grant Willcox
|
fddd3f15c2
|
Fix up code so that it will not block on attempting to delete the configuration on the folder, just in case the configuration doesn't exist in the first place. Instead print a warning and continue.
|
2022-02-22 17:52:29 -06:00 |
|
Jake Baines
|
4cd3563bc7
|
Initial commit of exploit for CVE-2021-36260
|
2022-02-19 13:13:24 -08:00 |
|
bwatters
|
3ea032472d
|
Updated exploit with better check method, added OnSessionCmd option
to run a command when a session is bootstrapped, added more
documentation.
|
2022-02-18 16:30:47 -06:00 |
|
Spencer McIntyre
|
443bf1249a
|
Remove all the old CVE-2021-1732 data
|
2022-02-18 15:25:39 -05:00 |
|
Spencer McIntyre
|
bcd7cb1122
|
Writeup the module metadata and docs
|
2022-02-18 15:23:44 -05:00 |
|
Tim W
|
90a06a1cb9
|
fix docs
|
2022-02-16 08:37:01 +00:00 |
|
Tim W
|
fb53ca0ac2
|
actually add support for Windows
|
2022-02-16 08:33:24 +00:00 |
|
Tim W
|
841af2c6e1
|
add support for Windows
|
2022-02-16 08:30:07 +00:00 |
|
Tim W
|
11f2c5201d
|
add documentation
|
2022-02-16 08:19:25 +00:00 |
|
bwatters
|
1086926b2e
|
Land #16159, Add module for CVE-2021-3129
Merge branch 'land-16159' into upstream-master
|
2022-02-15 17:14:01 -06:00 |
|
Jake Baines
|
5ac3330802
|
Initial commit of Axis camera app install exploit
|
2022-02-14 17:54:18 -08:00 |
|
Grant Willcox
|
a7ace66b3f
|
Use send_request_cgi and update options to use HttpUsername and HttpPassword accordingly. This simplifies code. Also update documentation accordingly
|
2022-02-14 18:19:00 -06:00 |
|
Grant Willcox
|
c49591cf11
|
Add in changes to use targets array as per Spencer's suggestion so we can now spawn Meterpreter shells. Also remove ACCOUNT_LOCKOUTS and fix a call that should have been .get_xml_document
|
2022-02-14 17:38:10 -06:00 |
|
Grant Willcox
|
4c1b2478fa
|
Add in exploit and documentation
|
2022-02-11 13:58:56 -06:00 |
|
space-r7
|
db00991f26
|
Land #16150, add nagios xi web shell upload
|
2022-02-11 11:45:06 -06:00 |
|
Jake Baines
|
0a78dd78ec
|
Used suggested method for defining user webshell, used suggested depth configuration, and used vars_get in a couple of places
|
2022-02-08 18:20:03 -08:00 |
|
space-r7
|
bed067dda0
|
Land #16125, add ARCH_CMD for GXV3140 support
|
2022-02-08 12:24:42 -06:00 |
|
Heyder Andrade
|
6b64c6b393
|
Add module documentation
|
2022-02-08 15:29:11 +01:00 |
|
Brendan Coles
|
5bbe934db9
|
Add QEMU Monitor HMP 'migrate' Command Execution module
|
2022-02-07 17:48:27 +00:00 |
|
Jake Baines
|
0fcc7e7733
|
Fixed spelling errors in descriptions
|
2022-02-06 02:55:17 -08:00 |
|
Jake Baines
|
9758251278
|
Initial commit of CVE-2021-37343
|
2022-02-05 18:21:18 -08:00 |
|
Spencer McIntyre
|
e2c91ebf30
|
Land #16010, zabbix_script_exec improvements
This updates the zabbix_script_exec module to work with versions 5.0 and
newer as well as adds a new item-based execution technique.
|
2022-02-04 15:13:13 -05:00 |
|
Spencer McIntyre
|
ae278d0568
|
Cleanup some minor typos
|
2022-02-04 15:12:57 -05:00 |
|
lap1nou
|
8838d9cb66
|
Added timeout system, fixed a bug with TLS_PSK, linted
|
2022-02-04 04:01:23 -08:00 |
|
lap1nou
|
645ef5e71f
|
Fixed few bugs
|
2022-02-02 14:30:02 -08:00 |
|
lap1nou
|
de32cc0e97
|
Linted with Rubocop, factorized API call, fixed some grammmar
|
2022-02-01 13:29:30 -08:00 |
|
space-r7
|
837fdf7c5e
|
Land #16128, add cisco rv unauth rce
|
2022-02-01 10:34:57 -06:00 |
|
Jake Baines
|
78312fb300
|
Update documentation/modules/exploit/linux/http/cisco_rv_series_authbypass_and_rce.md
Co-authored-by: Shelby Pace <40177151+space-r7@users.noreply.github.com>
|
2022-02-01 06:41:26 -05:00 |
|
Jake Baines
|
ccedcfefab
|
Added exploit for CVE-2021-1472/CVE-2021-1473
|
2022-01-29 18:56:53 -08:00 |
|
Brendan Coles
|
feebf25ad4
|
Add support for GXV3140 models and ARCH_CMD busybox telnetd payload
|
2022-01-29 19:38:57 +00:00 |
|
Brendan Coles
|
a4fcddca8e
|
Rename to grandstream_gxv31xx_settimezone_unauth_cmd_exec
|
2022-01-29 19:24:09 +00:00 |
|
Dhiraj Mishra
|
97d83f3fd5
|
cve_2021_4034_pwnkit_lpe_pkexec.md
|
2022-01-27 18:32:46 +04:00 |
|
Grant Willcox
|
44f040ad78
|
Land #16056, Exploit Module for Grandstream UCM62xx IP PBX (CVE-2020-5722)
|
2022-01-24 21:03:46 -06:00 |
|
Grant Willcox
|
15751a0f78
|
Minor langauge fix and final typo
|
2022-01-24 21:01:34 -06:00 |
|
Jake Baines
|
2c989ec714
|
Addressed multiple review comments (spelling, doc details, randomization, etc)
|
2022-01-22 14:09:58 -08:00 |
|
Spencer McIntyre
|
458d584f83
|
Add details to check codes and PR feedback
|
2022-01-21 09:40:23 -05:00 |
|