jvazquez-r7
|
37753e656e
|
Land #3882, @jvennix-r7's vmware/bash privilege escalation module
|
2014-09-25 00:42:12 -05:00 |
jvazquez-r7
|
456d731aa3
|
Fix processes check
|
2014-09-25 00:24:39 -05:00 |
William Vu
|
5a59b7cd89
|
Fix formatting
|
2014-09-24 23:12:11 -05:00 |
William Vu
|
e6f0736797
|
Add peer
|
2014-09-24 22:48:51 -05:00 |
William Vu
|
8b6519b5b4
|
Revert shortened reference
But it's so long. :(
|
2014-09-24 22:43:33 -05:00 |
William Vu
|
ecb10ebe28
|
Add variable HTTP method and other stuff
|
2014-09-24 22:41:01 -05:00 |
Joe Vennix
|
f6708b4d83
|
Check for running vmware processes first.
|
2014-09-24 19:11:38 -05:00 |
William Vu
|
a600a0655d
|
Scannerify the module
|
2014-09-24 18:58:39 -05:00 |
William Vu
|
abadf65d8d
|
Clean up title and formatting
|
2014-09-24 18:42:43 -05:00 |
William Vu
|
2562964581
|
Revert to my original code of using CMD
|
2014-09-24 18:00:13 -05:00 |
Joe Vennix
|
99da950734
|
Adds osx vmware/bash priv escalation.
|
2014-09-24 17:44:14 -05:00 |
William Vu
|
6ae578f80f
|
Add Stephane Chazelas as an author
|
2014-09-24 17:14:18 -05:00 |
William Vu
|
b2555408a4
|
Rename module
I don't think we're gonna make a supermodule like we had hoped.
|
2014-09-24 16:55:10 -05:00 |
William Vu
|
31e9e97146
|
Replace unnecessary reference with a better one
|
2014-09-24 16:52:43 -05:00 |
William Vu
|
fc04bf9d48
|
Update description
This is what I had when @todb-r7 beat me to the punch. >:P
|
2014-09-24 16:22:58 -05:00 |
Tod Beardsley
|
2f788c2e0c
|
Fix description
|
2014-09-24 16:13:05 -05:00 |
William Vu
|
ca63fe931d
|
Add CVE-2014-6271 PoC
|
2014-09-24 16:02:59 -05:00 |
sinn3r
|
11b9a8a6ae
|
Land #3814 - Advantech WebAccess dvs.ocx GetColor BoF
|
2014-09-23 15:06:21 -05:00 |
jvazquez-r7
|
b021ff4399
|
Add noche tags
|
2014-09-23 13:11:06 -05:00 |
jvazquez-r7
|
5c6236e874
|
Fix rop chain to allow VirtualAlloc when end of stack is too close
|
2014-09-23 13:08:26 -05:00 |
sinn3r
|
31ecbfdc4e
|
Land #3756 - EMC AlphaStor Device Manager Opcode 0x75 Command Injection
|
2014-09-23 12:57:46 -05:00 |
Jon Hart
|
259a368577
|
Land #3841, @jabra-'s modifications to ssdp_amp to support spoofing
|
2014-09-22 12:28:46 -07:00 |
Jon Hart
|
fc4c1907d3
|
Land #3839, @jabra-'s updates to dns_amp to support spoofing
|
2014-09-22 12:14:39 -07:00 |
Jon Hart
|
8f63075da4
|
Land #3837, @jabra-'s update to chargen scanner to support spoofing
|
2014-09-22 12:02:01 -07:00 |
Jon Hart
|
4e9f1282de
|
Land #3834, @jabra-'s updates to UDPscanner to support spoofing
|
2014-09-22 11:49:53 -07:00 |
sinn3r
|
2a714a7c4d
|
Fix a typo
Downloading and deleting are two very different things. Thanks Dan.
|
2014-09-21 18:35:26 -05:00 |
Josh Abraham
|
b7a0847114
|
SRC IP spoofing added to the SSDP amplification module
|
2014-09-20 21:37:01 -04:00 |
Josh Abraham
|
bb018de3a1
|
chargen src IP spoofing
|
2014-09-20 16:08:52 -04:00 |
Josh Abraham
|
3fb00ece9e
|
refactored the code based on PR feedback
|
2014-09-20 14:10:00 -04:00 |
jvazquez-r7
|
9acccfe9ba
|
Fix description
|
2014-09-19 17:18:59 -05:00 |
jvazquez-r7
|
d826132f87
|
Delete CVE, add EDB
|
2014-09-19 17:16:03 -05:00 |
jvazquez-r7
|
7afbec9d6c
|
Land #2890, @Ahmed-Elhady-Mohamed module for OSVDB 93034
|
2014-09-19 17:12:49 -05:00 |
jvazquez-r7
|
1fa5c8c00c
|
Add check method
|
2014-09-19 17:11:16 -05:00 |
jvazquez-r7
|
ce0b00bb0b
|
Change module location and filename
|
2014-09-19 16:59:35 -05:00 |
jvazquez-r7
|
0267e889e2
|
Use FileDropper
|
2014-09-19 16:58:21 -05:00 |
jvazquez-r7
|
6fd5027e05
|
Avoid UploadPath datastore option, parse from response
|
2014-09-19 16:55:28 -05:00 |
jvazquez-r7
|
2ce9bdf152
|
Use target_uri.path.to_s instead of uri
|
2014-09-19 16:43:40 -05:00 |
jvazquez-r7
|
eb55c7108b
|
Fix indentantion again
|
2014-09-19 16:41:07 -05:00 |
jvazquez-r7
|
cbfb7e600d
|
Use Rex::MIME::Message
|
2014-09-19 16:29:09 -05:00 |
jvazquez-r7
|
cffb28b5d3
|
Fix indentantion
|
2014-09-19 16:18:46 -05:00 |
jvazquez-r7
|
c00094ba6e
|
Land #3345, @mvdevnull's auxiliary module for OSVDB 106815, Alienvault sqli
|
2014-09-19 15:01:21 -05:00 |
jvazquez-r7
|
62414e2214
|
Add Timeout to exploit sqli
|
2014-09-19 15:00:54 -05:00 |
jvazquez-r7
|
db6372ec8b
|
Do minor module cleanup
|
2014-09-19 14:43:35 -05:00 |
jvazquez-r7
|
4a9294e3bf
|
Mark module as not executable
|
2014-09-19 14:36:44 -05:00 |
jvazquez-r7
|
405ac34a16
|
Fix author name
|
2014-09-19 13:56:13 -05:00 |
jvazquez-r7
|
79d5fb56d4
|
Land #3829, @jhart-r7's UDP emtpy probe scanner
|
2014-09-19 13:54:35 -05:00 |
Jon Hart
|
737f77d31a
|
Cleaner output when PORTS is invalid
|
2014-09-19 11:12:14 -07:00 |
Jon Hart
|
3493987300
|
report_service when we find something this way
|
2014-09-19 10:45:06 -07:00 |
Josh Abraham
|
43171141da
|
update for ntp modules
|
2014-09-19 11:14:11 -04:00 |
Jon Hart
|
a54b23642e
|
Relocate empty UDP scanner
|
2014-09-18 12:31:52 -07:00 |