Commit Graph

51630 Commits (master)

Author SHA1 Message Date
Brent Cook 54bbcc91ba
Land #11749, Update spec with new intended cmd_creds behavior 2019-04-18 07:27:35 -05:00
Jacob Robles 37f5a419b7
Update spec with new intended cmd_creds behavior
Creds behavior was changed in PR #11742
2019-04-18 05:53:23 -05:00
Brent Cook 56995eaa5e
Land #11746, explicitly spawn a subshell for cmd_exec 2019-04-18 05:19:55 -05:00
Brendan Coles 10871fa115 Update tested versions 2019-04-18 09:01:51 +00:00
bcoles dd15bdd43a
Update modules/auxiliary/scanner/http/springcloud_traversal.rb
Co-Authored-By: RootUp <mishra.dhiraj95@gmail.com>
2019-04-18 12:17:41 +04:00
bcoles fe66786eca
Update modules/auxiliary/scanner/http/springcloud_traversal.rb
Co-Authored-By: RootUp <mishra.dhiraj95@gmail.com>
2019-04-18 12:17:31 +04:00
Tim W 31eab90c74 fix mettle cmd_exec 2019-04-18 15:30:26 +08:00
Dhiraj Mishra 5b4dbd034d
springcloud_traversal.rb 2019-04-18 11:24:34 +04:00
h00die 20934f114a check for a few more bad inputs 2019-04-17 20:33:50 -04:00
Imran E. Dawoodjee 521277691e
Allow users to add other files for realism.
Update docs to reflect this change.
2019-04-18 04:07:46 +08:00
James Barnett 158e3d4ad3
Land #11743, remove regex syntax from invalidate_login 2019-04-17 14:14:06 -05:00
Metasploit 54258534a4
automatic module_metadata_base.json update 2019-04-17 11:39:51 -07:00
William Vu 8e8763df5b Update invalidate_login to remove regex creds 2019-04-17 13:24:59 -05:00
Brent Cook 22085113ad
Land #11729, Add Libreoffice macro exec exploit module 2019-04-17 13:21:11 -05:00
William Vu 6be1d41e35
Land #11742, username and password literal search 2019-04-17 13:07:15 -05:00
James Barnett 0c1d63c0ce
Update comments as regex is no longer supported 2019-04-17 13:00:42 -05:00
James Barnett 681a4c43c6
Make user and pass options on cred lookup literal
Fixes #11555
2019-04-17 12:37:59 -05:00
Shelby Pace 392078990c
added x64 arch for targets 2019-04-17 08:29:58 -05:00
Metasploit 03cb3e31db
automatic module_metadata_base.json update 2019-04-17 00:57:54 -07:00
Brent Cook e2b15b3d61
Land #11733, add missing osx docs and update compatibility 2019-04-17 02:48:30 -05:00
Brent Cook b35a1be946
Land #11724, Improve 'use' command to automatically search and fuzzy-match if possible 2019-04-17 02:38:29 -05:00
h00die 4d2962386e save creds from password prompt spoof 2019-04-16 20:44:45 -04:00
asoto-r7 06792f7cd4
Moved documentation to 'documentation' folder 2019-04-16 14:16:52 -05:00
asoto-r7 0aaae062a4
Updated RPORT to 8090, reduced timeout of final exec.vm request to 5 sec 2019-04-16 14:13:35 -05:00
asoto-r7 8b61c5edf5
Fixed target_platform_compat to support 'Windows 10', made debugging easier 2019-04-16 13:18:00 -05:00
Metasploit b674dc8986
Bump version of framework to 5.0.18 2019-04-16 10:51:27 -07:00
Imran E. Dawoodjee 6676dcb2ec
Allow user to use a file of their own choosing.
Updates to documentation and some comments in the module.
2019-04-17 00:18:27 +08:00
Shelby Pace 54edf3c008
reduced file size 2019-04-16 09:06:44 -05:00
Brent Cook 3184800329
Land #11716, check for directory traversal on internal zip paths 2019-04-16 08:24:06 -05:00
h00die 621c7182bf osx docs and cleanup 2019-04-15 21:01:05 -04:00
Sonny Gonzalez cf7096f8ba
Target path normalization fixed 2019-04-15 16:35:15 -05:00
Imran E. Dawoodjee 6c798221fb
Module for CVE-2018-20250 and documentation 2019-04-16 02:21:25 +08:00
Shelby Pace d0c29e7b1e
mention needed handler in usage instructions 2019-04-15 08:47:13 -05:00
Shelby Pace 8dc8a18d2b
added documentation and changes for module 2019-04-15 08:26:11 -05:00
Metasploit 5d55600d7d
automatic module_metadata_base.json update 2019-04-15 05:48:29 -07:00
Jacob Robles 8adecac4cf
Land #11698, Add wp-google-maps unauth SQLi 2019-04-15 07:38:31 -05:00
Jacob Robles 5559de2458
Update documentation 2019-04-15 07:06:27 -05:00
Synacktiv 562de86fc9
Merge pull request #2 from jrobles-r7/wp-google-maps-sqli
Wp google maps sqli update
2019-04-15 10:17:39 +02:00
h00die dcc1a21251 add osx to hash identify 2019-04-14 10:12:26 -04:00
h00die 75ac760d18 Merge branch 'master' of https://github.com/rapid7/metasploit-framework into hash_lib 2019-04-14 09:32:29 -04:00
h00die 1e5253b0eb add python and generate bcrypt on fly 2019-04-13 10:36:56 -04:00
William Vu 23f28e8337 Implement "intelligent" use command with search -u 2019-04-12 18:06:08 -05:00
h00die 0739f5080a expand hashes identify library and add spec 2019-04-12 17:08:19 -04:00
Jeffrey Martin f41a90a582
Land #11720, Update CONTRIBUTING.md advice on topic branches 2019-04-12 15:22:30 -05:00
Jacob Robles 028890ec51
Move ncs mixin code to rex 2019-04-12 15:12:09 -05:00
Jacob Robles 51cb4358d6
Randomize check number 2019-04-12 14:47:34 -05:00
Metasploit 7d383d8bde
automatic module_metadata_base.json update 2019-04-12 12:39:42 -07:00
William Vu bbeddb2130
Land #11721, Cisco RV130 exploit updates 2019-04-12 14:31:27 -05:00
William Vu 6326aa5dda Clean up module and randomize username 2019-04-12 14:23:57 -05:00
Metasploit 7de9f5beea
automatic module_metadata_base.json update 2019-04-12 12:20:17 -07:00