cgranleese-r7
|
ec7347cd49
|
Land #17509, tomcat 7 priv esc on rhel based systems (cve-2016-5425)
|
2023-03-14 10:16:18 +00:00 |
|
h00die
|
a5a7d5dd10
|
correct cleanup and stabilization
|
2023-02-05 08:15:38 -05:00 |
|
h00die
|
561b42f105
|
use exploit retry function
|
2023-02-04 18:17:42 -05:00 |
|
h00die
|
6aa6f5176b
|
touch up verbiage and stuff
|
2023-02-04 18:17:42 -05:00 |
|
h00die
|
2b09af78e1
|
tomcat 8 priv esc on ubuntu
|
2023-02-04 18:17:41 -05:00 |
|
Jack Heysel
|
6ab7e177f4
|
Land #17392, add F5 Big-IP priv esc module
Add a privilege escalation module for F5 that uses
the unsecured MCP socket to create a new root account
|
2023-02-02 15:10:33 -05:00 |
|
adfoster-r7
|
6870efc34a
|
Land #17426, Update all references to old Wiki to point to new docs site
|
2023-02-01 23:49:20 +00:00 |
|
Ron Bowes
|
cf172d22c8
|
Get rid of #String.hash in favour of UnixCrypt
|
2023-02-01 11:02:04 -08:00 |
|
Ron Bowes
|
1094221468
|
Merge branch 'rapid7:master' into f5-createuser-privesc
|
2023-02-01 10:20:43 -08:00 |
|
Ron Bowes
|
638a1c519d
|
Update documentation/modules/exploit/linux/local/f5_create_user.md
Better demo exploit
Co-authored-by: jheysel-r7 <Jack_Heysel@rapid7.com>
|
2023-02-01 10:14:25 -08:00 |
|
h00die
|
5a374533af
|
cve-2022-1043
|
2023-01-31 16:02:25 -05:00 |
|
h00die
|
8d58eb6279
|
cve-2022-1043
|
2023-01-31 16:02:25 -05:00 |
|
h00die
|
62d43a6e96
|
use exploit retry function
|
2023-01-28 07:44:53 -05:00 |
|
Grant Willcox
|
6043d0ffba
|
Update all links from Wiki site to new docs site.
|
2023-01-27 09:58:53 -06:00 |
|
h00die
|
633c58a0ff
|
tomcat on rhel priv esc
|
2023-01-19 15:28:10 -05:00 |
|
h00die
|
be7ca91a8f
|
cve-2022-22942
|
2023-01-17 15:30:36 -05:00 |
|
Ron Bowes
|
2ec77e6d95
|
Merge branch 'master' into f5-createuser-privesc
|
2022-12-15 13:11:26 -08:00 |
|
Christophe De La Fuente
|
e7e2849f6d
|
Land #17183, Zimbra fixes
|
2022-12-06 15:38:37 +01:00 |
|
h00die
|
6877304bac
|
exploit for cve-2021-22015 vcenter priv esc
|
2022-11-20 11:29:49 -05:00 |
|
Ron Bowes
|
fc579fe3f4
|
Add a privesc module for F5, using the MCP protocol
|
2022-11-16 12:12:16 -08:00 |
|
Ron Bowes
|
ab2042f34e
|
Add patch notes to the Slapper module documentation
|
2022-10-25 10:04:52 -07:00 |
|
Ron Bowes
|
3ac3fa6c32
|
Move the Zimbra Slapper doc to the right folder (Windows -> Linux)
|
2022-10-25 09:51:27 -07:00 |
|
Christophe De La Fuente
|
fa67b6973d
|
Documentation fix to follow the template
|
2022-10-18 16:09:57 +02:00 |
|
Ron Bowes
|
dea3f72f6b
|
Resolve feedback - get rid of unnecessary directory, add CVE number, let the user choose the path
|
2022-10-17 15:00:56 -07:00 |
|
Ron Bowes
|
a2a2dcbf6f
|
Check in zimbra_postfix_priv_esc.rb
|
2022-10-14 13:21:41 -07:00 |
|
h00die
|
b7073df1e0
|
review comments
|
2022-10-03 16:53:14 -04:00 |
|
h00die
|
e78babea90
|
cve-2022-37706
|
2022-10-01 11:24:29 -04:00 |
|
bwatters
|
e27dbd2787
|
Land #16794,Add exploit for CVE-2022-34918
Merge branch 'land-16794' into upstream-master
|
2022-09-27 16:37:52 -05:00 |
|
Spencer McIntyre
|
6965115c8e
|
Land #16786, Zyxel Firewall LPE (CVE-2022-30526)
|
2022-08-31 08:40:23 -04:00 |
|
Spencer McIntyre
|
8ed4293e9c
|
Add module docs for CVE-2022-31660
|
2022-08-02 16:42:08 -04:00 |
|
Redouane NIBOUCHA
|
37f1fdd47b
|
Add module docs, add Ubuntu 22.04 offsets, update check method
|
2022-07-22 03:30:03 +02:00 |
|
Jake Baines
|
cf54762191
|
Initial commit of CVE-2022-30526 LPE
|
2022-07-19 03:29:11 -07:00 |
|
Grant Willcox
|
78d4ac8592
|
Update module reliability and also fix issues from bcoles's review
|
2022-04-20 19:04:27 -05:00 |
|
bwatters
|
d9a241defb
|
Fix overzealous source code edit and some version copy/pasta errors
|
2022-04-20 14:31:32 -05:00 |
|
Grant Willcox
|
b83a4b2a7a
|
Add in fixes to module and documentation from final review
|
2022-04-14 12:45:15 -05:00 |
|
bwatters
|
83f4473c2a
|
Correct Ubuntu target version
|
2022-04-14 12:01:38 -05:00 |
|
bwatters
|
03d01d2f72
|
Remove stray markup
|
2022-04-14 10:29:54 -05:00 |
|
bwatters
|
f32443b477
|
Update with debug source code and options, cleanup module code per gwillcox-r7
|
2022-04-14 10:25:55 -05:00 |
|
bwatters
|
147d6e1df7
|
Added docs, reverted strip_comments, rubocop'd
|
2022-04-12 21:14:11 -05:00 |
|
space-r7
|
872b9c9a7c
|
modify docs to reflect changes, remove 'return'
|
2022-03-10 10:39:32 -06:00 |
|
Tim W
|
bcc9d01958
|
add documentation
|
2022-03-09 08:34:20 +00:00 |
|
red
|
23a09be333
|
Fix typo in document of cve_2021_4034
ContOS => CentOS
|
2022-03-05 23:58:31 +08:00 |
|
bwatters
|
e649fe3f69
|
Fix some markdown issues, update docs and add arch check for payloads
|
2022-03-02 16:30:52 -06:00 |
|
bwatters
|
06e897436c
|
Add Fedora results to docs and some minor final cleanup
|
2022-03-02 09:12:01 -06:00 |
|
bwatters
|
58aed837b2
|
Update docs and options
|
2022-03-01 14:48:48 -06:00 |
|
bwatters
|
3ea032472d
|
Updated exploit with better check method, added OnSessionCmd option
to run a command when a session is bootstrapped, added more
documentation.
|
2022-02-18 16:30:47 -06:00 |
|
Dhiraj Mishra
|
97d83f3fd5
|
cve_2021_4034_pwnkit_lpe_pkexec.md
|
2022-01-27 18:32:46 +04:00 |
|
bwatters
|
77812ae4c4
|
Update documentation for multiple binaries, add targeting data,
other bcoles improvements
|
2021-12-02 09:57:48 -06:00 |
|
bwatters
|
1f33305ce1
|
Add documentation
|
2021-12-01 14:54:48 -06:00 |
|
Spencer McIntyre
|
9635110050
|
Add documentation for CVE-2021-38648
|
2021-10-27 12:06:01 -04:00 |
|