sinn3r
|
36165cba88
|
Land #2575 - Update meterpreter DLLs
|
2013-10-24 21:10:24 -05:00 |
Tod Beardsley
|
27739a0351
|
Meterpreter bins after Meterpreter PR 32
Protects against potential BOFs due to strcpy usage.
These binaries were built against meterpreter master after
https://github.com/rapid7/meterpreter/pull/32 landed.
The CI tests can be seen here:
https://ci.metasploit.com/view/Meterpreter/job/MeterpreterWin/75/
Note, this commit is signed. Your merge commit should be signed, too, so
people can be assured that nobody is backdooring Meterpreter on the sly.
|
2013-10-24 15:15:49 -05:00 |
sinn3r
|
7d788fbf76
|
Land #2571 - HP Intelligent Management SOM FileDownloadServlet Arbitrary Download
|
2013-10-24 14:15:26 -05:00 |
sinn3r
|
7ee615223d
|
Land #2570 - HP Intelligent Management SOM Account Creation
|
2013-10-24 14:14:06 -05:00 |
sinn3r
|
811d1ca937
|
Land #2573 - Fix a typo
|
2013-10-24 11:35:56 -05:00 |
jvazquez-r7
|
ea80c15c3b
|
Land #2383, @jamcut's aux module for jenkins enum
|
2013-10-24 11:31:36 -05:00 |
jvazquez-r7
|
8428671f32
|
Land #2455, @juushya's aux module for radware
|
2013-10-24 10:54:02 -05:00 |
jvazquez-r7
|
1673b66cbe
|
Delete some white lines
|
2013-10-24 10:50:14 -05:00 |
jvazquez-r7
|
b589e9aa6e
|
Use the peer method
|
2013-10-24 10:45:02 -05:00 |
jvazquez-r7
|
cb3b3022dc
|
Land #2572, @bcoles's exploit for cve-2009-4140
|
2013-10-24 10:16:00 -05:00 |
jvazquez-r7
|
2ef33aabe7
|
Clean open_flash_chart_upload_exec
|
2013-10-24 10:15:28 -05:00 |
ethicalhack3r
|
6f605fb009
|
Typo
|
2013-10-24 16:33:26 +02:00 |
bcoles
|
8a5d4d45b4
|
Add Open Flash Chart v2 Arbitrary File Upload exploit
|
2013-10-24 22:46:41 +10:30 |
Tod Beardsley
|
b5f26455a3
|
Land #2545, javascript library overhaul
|
2013-10-23 16:12:49 -05:00 |
jvazquez-r7
|
255cd18868
|
Use peer helper
|
2013-10-23 16:08:40 -05:00 |
Tod Beardsley
|
ec70861050
|
Msftidy for test modules? Why not
|
2013-10-23 16:06:19 -05:00 |
Tod Beardsley
|
a554784d59
|
Add @wchen-r7's test module to the test dir
See the referenced gist on #2545
|
2013-10-23 16:01:13 -05:00 |
jvazquez-r7
|
69da39ad52
|
Add module for ZDI-13-240
|
2013-10-23 16:01:01 -05:00 |
sinn3r
|
d1e1968cb9
|
Land #2566 - Download and delete a file via SMB
|
2013-10-23 12:28:57 -05:00 |
sinn3r
|
9a51dd5fc4
|
Do exception handling and stuff
|
2013-10-23 12:28:25 -05:00 |
sinn3r
|
0500842625
|
Do some exception handling
|
2013-10-23 12:22:49 -05:00 |
sinn3r
|
83a4ac17e8
|
Make sure fd is closed to avoid a possible resource leak
|
2013-10-23 12:16:18 -05:00 |
sinn3r
|
af02fd0355
|
Use store_loot, sorry mubix
|
2013-10-23 12:13:05 -05:00 |
jvazquez-r7
|
55e3f36589
|
Add module for ZDI-13-242
|
2013-10-23 11:24:29 -05:00 |
William Vu
|
0bc72a3bd4
|
Land #2564, pretty Fivemat format for RSpec
|
2013-10-23 11:17:07 -05:00 |
William Vu
|
bea04cceeb
|
Remove the trailing slash from the ZDI ref
|
2013-10-23 11:05:33 -05:00 |
William Vu
|
ba74870673
|
Land #2567, ZDI ref correction for EMC exploit
|
2013-10-23 11:04:09 -05:00 |
Booboule
|
7d84fa487e
|
Correct ZDI ref to match new scheme
|
2013-10-23 11:44:44 +02:00 |
sinn3r
|
caf41f34bf
|
Land #2562 - Fix RM 8510 (FileDropper)
|
2013-10-22 21:45:33 -05:00 |
Rob Fuller
|
8f3228d191
|
chage author but basic copied from hdms upload_file
|
2013-10-22 21:13:30 -04:00 |
sinn3r
|
acc73dd545
|
Land #2282 - BypassUAC now checks if the process is LowIntegrityLevel
|
2013-10-22 17:16:26 -05:00 |
sinn3r
|
af174639cd
|
Land #2468 - Hwnd Broadcast Performance
|
2013-10-22 17:03:02 -05:00 |
jvazquez-r7
|
7d1dc3746f
|
Use the @schierlm's command
|
2013-10-22 16:19:49 -05:00 |
sinn3r
|
079c82d11d
|
Land #2565 - Show full path in msftidy
|
2013-10-22 16:05:56 -05:00 |
sinn3r
|
2e8c369c69
|
Land #2559 - remove content-length
|
2013-10-22 16:03:42 -05:00 |
sinn3r
|
ee95ca5e2b
|
Land #2158 - Fix NoMethodError undefined method `split' for nil:NilClass
|
2013-10-22 16:01:27 -05:00 |
Tod Beardsley
|
dc0d9ae21d
|
Land #2560, ZDI references
[FixRM #8513]
|
2013-10-22 15:58:21 -05:00 |
sinn3r
|
e1c4aef805
|
Land #1789 - Windows SSO Post Module
|
2013-10-22 15:48:15 -05:00 |
Meatballs
|
8611a2a24c
|
Merge remote-tracking branch 'upstream/master' into low_integ_bypassuac
|
2013-10-22 21:42:36 +01:00 |
sinn3r
|
ba1edc6fa8
|
Land #2402 - Windows Management Instrumentation Local -> Peers
|
2013-10-22 15:39:32 -05:00 |
Rob Fuller
|
b2b8824e2e
|
add delete and download modules for smb
|
2013-10-22 16:31:56 -04:00 |
jvazquez-r7
|
6989f16661
|
Land #2548, @titanous's aux module for CVE-2013-4450
|
2013-10-22 15:02:54 -05:00 |
jvazquez-r7
|
bdf07456ba
|
Last cleanup for nodejs_pipelining
|
2013-10-22 15:00:58 -05:00 |
William Vu
|
33c3167362
|
Show full path instead of just the basename
Since @todb-r7 and I hate having to use find. :/
|
2013-10-22 14:54:54 -05:00 |
Jonathan Rudenberg
|
db447b65f9
|
Add exploit for Node.js HTTP Pipelining DoS
|
2013-10-22 15:12:14 -04:00 |
jvazquez-r7
|
11b2719ccc
|
Change module plate
|
2013-10-22 12:36:58 -05:00 |
jvazquez-r7
|
df42dfe863
|
Land #2536, @ddouhine's exploit for ZDI-11-061
|
2013-10-22 12:35:40 -05:00 |
jvazquez-r7
|
c34155b8be
|
Clean replication_manager_exec
|
2013-10-22 12:34:35 -05:00 |
Tod Beardsley
|
dc19aa0340
|
Land #2500, msfupdate/msfconsole SVN purge
Tested a reasonable set of platforms, all looks good.
|
2013-10-22 12:28:20 -05:00 |
sinn3r
|
7c6c0ee450
|
Land #2563 - Fix misleading statement in Outlook post module
|
2013-10-22 12:16:42 -05:00 |