jvazquez-r7
|
37753e656e
|
Land #3882, @jvennix-r7's vmware/bash privilege escalation module
|
2014-09-25 00:42:12 -05:00 |
jvazquez-r7
|
456d731aa3
|
Fix processes check
|
2014-09-25 00:24:39 -05:00 |
Joe Vennix
|
f6708b4d83
|
Check for running vmware processes first.
|
2014-09-24 19:11:38 -05:00 |
Joe Vennix
|
99da950734
|
Adds osx vmware/bash priv escalation.
|
2014-09-24 17:44:14 -05:00 |
sinn3r
|
11b9a8a6ae
|
Land #3814 - Advantech WebAccess dvs.ocx GetColor BoF
|
2014-09-23 15:06:21 -05:00 |
jvazquez-r7
|
b021ff4399
|
Add noche tags
|
2014-09-23 13:11:06 -05:00 |
jvazquez-r7
|
5c6236e874
|
Fix rop chain to allow VirtualAlloc when end of stack is too close
|
2014-09-23 13:08:26 -05:00 |
sinn3r
|
31ecbfdc4e
|
Land #3756 - EMC AlphaStor Device Manager Opcode 0x75 Command Injection
|
2014-09-23 12:57:46 -05:00 |
jvazquez-r7
|
9acccfe9ba
|
Fix description
|
2014-09-19 17:18:59 -05:00 |
jvazquez-r7
|
d826132f87
|
Delete CVE, add EDB
|
2014-09-19 17:16:03 -05:00 |
jvazquez-r7
|
7afbec9d6c
|
Land #2890, @Ahmed-Elhady-Mohamed module for OSVDB 93034
|
2014-09-19 17:12:49 -05:00 |
jvazquez-r7
|
1fa5c8c00c
|
Add check method
|
2014-09-19 17:11:16 -05:00 |
jvazquez-r7
|
ce0b00bb0b
|
Change module location and filename
|
2014-09-19 16:59:35 -05:00 |
jvazquez-r7
|
0267e889e2
|
Use FileDropper
|
2014-09-19 16:58:21 -05:00 |
jvazquez-r7
|
6fd5027e05
|
Avoid UploadPath datastore option, parse from response
|
2014-09-19 16:55:28 -05:00 |
jvazquez-r7
|
2ce9bdf152
|
Use target_uri.path.to_s instead of uri
|
2014-09-19 16:43:40 -05:00 |
jvazquez-r7
|
eb55c7108b
|
Fix indentantion again
|
2014-09-19 16:41:07 -05:00 |
jvazquez-r7
|
cbfb7e600d
|
Use Rex::MIME::Message
|
2014-09-19 16:29:09 -05:00 |
jvazquez-r7
|
cffb28b5d3
|
Fix indentantion
|
2014-09-19 16:18:46 -05:00 |
jvazquez-r7
|
64ac1e6b26
|
Rand padding
|
2014-09-17 08:09:09 -05:00 |
jvazquez-r7
|
e593a4c898
|
Add comment about gadgets origin
|
2014-09-16 16:38:03 -05:00 |
jvazquez-r7
|
80f02c2a05
|
Make module ready to go
|
2014-09-16 15:18:11 -05:00 |
sinn3r
|
3e09283ce5
|
Land #3777 - Fix struts_code_exec_classloader on windows
|
2014-09-16 13:09:58 -05:00 |
sinn3r
|
158d4972d9
|
More references and pass msftidy
|
2014-09-16 12:54:27 -05:00 |
Vincent Herbulot
|
7a7b6cb443
|
Some refactoring
Use EDB instead of URL for Exploit-DB.
Remove peer variable as peer comes from HttpClient.
|
2014-09-16 17:49:45 +02:00 |
us3r777
|
4c615ecf94
|
Module for CVE-2014-5519, phpwiki/ploticus RCE
|
2014-09-16 00:09:41 +02:00 |
jvazquez-r7
|
3a6066792d
|
Work in rop chain...
|
2014-09-13 17:38:19 -05:00 |
jvazquez-r7
|
e2ef927177
|
Add first version for ZDI-14-255
|
2014-09-12 08:57:54 -05:00 |
jvazquez-r7
|
373eb3dda0
|
Make struts_code_exec_classloader to work on windows
|
2014-09-10 18:00:16 -05:00 |
Jon Hart
|
495e1c14a1
|
Land #3721, @brandonprry's module for Railo CVE-2014-5468
|
2014-09-09 19:10:46 -07:00 |
Jon Hart
|
26d8432a22
|
Minor style and usability changes to @brandonprry's #3721
|
2014-09-09 19:09:45 -07:00 |
Brandon Perry
|
db6052ec6a
|
Update check method
|
2014-09-09 18:51:42 -05:00 |
sinn3r
|
0a6ce1f305
|
Land #3727 - SolarWinds Storage Manager exploit AND Msf::Payload::JSP
|
2014-09-09 17:21:03 -05:00 |
sinn3r
|
027f543bdb
|
Land #3732 - Eventlog Analzyer exploit
|
2014-09-09 11:33:20 -05:00 |
sinn3r
|
75269fd0fa
|
Make sure we're not doing a 'negative' timeout
|
2014-09-09 11:26:49 -05:00 |
Tod Beardsley
|
4abee39ab2
|
Fixup for release
Ack, a missing disclosure date on the GDB exploit. I'm deferring to the
PR itself for this as the disclosure and URL reference.
|
2014-09-08 14:00:34 -05:00 |
William Vu
|
ae5a8f449c
|
Land #3691, gdbserver hax
|
2014-09-08 11:48:39 -05:00 |
jvazquez-r7
|
df278dd2dc
|
Conver to exploit
|
2014-09-05 14:47:33 -05:00 |
jvazquez-r7
|
d4a8b7e00d
|
Move to exploits
|
2014-09-05 10:38:28 -05:00 |
jvazquez-r7
|
d041ee6629
|
Delete exploit modules from this branch
|
2014-09-05 10:29:24 -05:00 |
sinn3r
|
85b48fd437
|
Land #3736 - Revert initial ff xpi prompt bypass for Firefox 22-27
|
2014-09-04 16:08:15 -05:00 |
jvazquez-r7
|
f063dcf0f4
|
Land #3741, @pedrib's module for CVE-2014-5005 Desktop Central file upload
|
2014-09-04 15:44:21 -05:00 |
jvazquez-r7
|
f466b112df
|
Minor cleaning on check
|
2014-09-04 15:43:59 -05:00 |
jvazquez-r7
|
74b8e8eb40
|
Change module filename
|
2014-09-04 15:39:34 -05:00 |
jvazquez-r7
|
7563c0bd0e
|
Use Gem::Version
|
2014-09-04 14:40:13 -05:00 |
jvazquez-r7
|
2615a7a3be
|
Favor \&\& and || operands
|
2014-09-04 14:35:37 -05:00 |
Joe Vennix
|
0e18d69aab
|
Add extended mode to prevent service from dying.
|
2014-09-03 16:07:27 -05:00 |
Joe Vennix
|
4293500a5e
|
Implement running exe in multi.
|
2014-09-03 15:56:21 -05:00 |
Pedro Ribeiro
|
f0e3fa18a3
|
Restore the original filename
|
2014-09-03 21:32:05 +01:00 |
Joe Vennix
|
268d42cf07
|
Add PrependFork to payload options.
|
2014-09-03 14:56:22 -05:00 |