Pearce Barry
0dbad5d2e3
Land #11349 , Add Evince CBT File Command Injection module
2019-02-06 17:54:07 -06:00
Jacob Robles
15f624b745
Land #11304 , Add CVE-2018-1000999 to MailCleaner module
2019-02-05 07:19:32 -06:00
Brent Cook
b13129f9fb
Land #11348 , Add nil check to enum_patches
2019-02-04 05:25:42 -06:00
Brent Cook
ac94557a15
Land #11347 , add version check to Safari RCE exploit
2019-02-04 05:22:01 -06:00
Brendan Coles
6f31b1a110
Change default payload to reverse_bash
2019-02-03 06:18:31 +00:00
Brendan Coles
9c3368f325
Add Evince CBT File Command Injection module
2019-02-03 05:38:56 +00:00
Brendan Coles
28283809f9
Add nil check to enum_patches
2019-02-02 15:33:48 +00:00
bwatters
239cce53ea
Land #11039 , Add linux x64 ipv6 reverse shell
...
Merge branch 'land-11039' into upstream-master
2019-02-01 16:21:24 -06:00
William Vu
61b468ac7d
Add URL reference to blog post
2019-02-01 14:49:33 -06:00
William Vu
7b88277c6f
Prefer case statement over long if block
2019-02-01 14:40:09 -06:00
bwatters
2640ecb4c4
Land #11338 , Add module to discover Ubiquiti devices
...
Merge branch 'land-11338' into upstream-master
2019-02-01 11:40:52 -06:00
Wei Chen
ba69a0b26a
Land #11310 , MSF API to zip instead of relying on system()
2019-02-01 11:32:20 -06:00
Jon Hart
f0519a5af5
Minor syntax; add logging for unhandled fields
2019-01-31 18:41:27 -08:00
Jeffrey Martin
5a63e629e4
update payload sizes for mettle 0.5.4
2019-01-31 00:12:45 -06:00
Jon Hart
4681ed9669
Update docs, strip empty essid
2019-01-30 14:31:20 -08:00
Jon Hart
603d2a0c04
Add docs
2019-01-30 14:26:15 -08:00
Jon Hart
96d612fb40
WIP commit on module to disover Ubiquiti devices on 10001/UDP
2019-01-30 14:19:02 -08:00
William Vu
b7bc52d20b
Fix HTTP/SMB mixin order to restore SSL option
...
Mixin order matters. Mixins kinda suck.
2019-01-29 11:09:34 -06:00
bwatters
6c9a5b3fea
Update Cache Sizes
2019-01-28 15:53:19 -06:00
William Vu
c8bf8781f5
Strip e-mail
2019-01-24 13:49:22 -06:00
William Vu
156851009b
Remove incorrect documentation
...
The comment is a lie.
2019-01-24 13:48:45 -06:00
William Vu
0e6fbb439f
Prefer Msf::Util::EXE.to_zip over system()
2019-01-24 13:47:47 -06:00
William Vu
f0aa002009
Land #10119 , Linux post-exploitation metashell
2019-01-24 11:24:12 -06:00
William Vu
8cdcba81fe
Fix SessionTypes
2019-01-24 11:22:19 -06:00
William Vu
006faa3d17
Fix prompt
2019-01-24 11:21:45 -06:00
Tod Beardsley
daa3076d42
Add CVE-2018-1000999 to MailCleaner module
...
See PR #11148
This adds the new CVE assigned by DWF for this vulnerability.
Note that [CVE-2018-10933](https://www.cvedetails.com/cve/CVE-2018-10933/ )
describes a vulnerability in libssh, but this one describes the issue as
it pertains to MailCleaner specifically.
2019-01-23 09:27:12 -06:00
Shelby Pace
2ae6142de7
Land #11243 , Add ASan SUID Privesc
2019-01-22 15:50:53 -06:00
sinn3r
fae1b52115
Land #11297 , Fix a typo in auxiliary/dos/scada/allen_bradley_pccc
...
typo fixed
2019-01-22 11:41:29 -06:00
jdiog0
23e0389bf0
typo fixed
2019-01-22 13:33:24 +00:00
Tim W
5fc0c66109
add version to check to safari exploit
2019-01-22 16:10:51 +08:00
Brendan Coles
060d20694d
Attribution
2019-01-20 09:18:43 +00:00
William Vu
f8af9a9e4d
Merge remote-tracking branch 'upstream/master' into pr/10119
2019-01-18 10:43:34 -06:00
Clément Notin
31a7b13c19
ms17_010_psexec: fix RHOST in "authenticating..." message
2019-01-16 11:23:21 +01:00
Brent Cook
1947bae45b
Land #11230 , add JuicyPotato local privilege escalation
2019-01-15 21:20:25 -06:00
William Vu
06de16a36f
Merge remote-tracking branch 'upstream/master' into pr/10119
2019-01-15 18:33:48 -06:00
Wei Chen
27d6fffdad
Land #11125 , Import/generate `ysoserial` Java serialization objects
2019-01-15 17:09:56 -06:00
h00die
a73fe9433b
land #11169 blueman priv esc on linux
2019-01-15 10:32:46 -05:00
Jacob Robles
923a4ba098
Land #11263 , uppercase KoreLogic in JTR modules
2019-01-15 08:50:11 -06:00
Jacob Robles
9616a9f79d
Land #11245 , doc update for chrome_cookies
2019-01-15 07:27:35 -06:00
Jacob Robles
04363b7b7e
Doc update
...
post:chrome_cookies
2019-01-15 07:19:46 -06:00
h00die
93f66a1f22
uppercase
2019-01-15 08:04:11 -05:00
bcoles
8c636f27d5
Update check method to confirm vulnerability
2019-01-15 11:31:31 +11:00
Wei Chen
47f8738f74
Add Imran Rashid to CVE-2018-11770 credit
2019-01-14 15:28:08 -06:00
Wei Chen
52ff0a8b75
Update exploits/linux/http/spark_unauth_rce as CVE-2018-11770
2019-01-14 15:10:29 -06:00
Brendan Coles
c6f4eda7f9
Add ASan SUID Executable Privilege Escalation module
2019-01-12 09:14:20 +00:00
phra
e69d509bdf
chore: update description and ranking
2019-01-12 04:32:21 +01:00
phra
3a865a0c05
feat: spawn as NT AUTHORITY\SYSTEM
2019-01-12 04:03:26 +01:00
William Vu
e9a8d5708a
Land #11234 , @bcoles revisionism
2019-01-11 20:15:34 -06:00
phra
149f895329
feat: add LOGFILE support for debug
2019-01-11 18:21:54 +01:00
phra
dca99552e6
feat: pass payload length to the dll
2019-01-11 16:28:49 +01:00