OJ
|
72a20ce464
|
Merge timwr's changes that fix android/reverse_http
|
2016-12-01 09:59:41 +10:00 |
OJ
|
8f077e1bf5
|
Merge timwr's changes for autoloading android
|
2016-12-01 09:58:54 +10:00 |
William Vu
|
1d6ee7192a
|
Land #7427, new options for nagios_xi_chained_rce
|
2016-11-30 17:11:02 -06:00 |
William Vu
|
b0cd28ef4c
|
Update module docs
|
2016-11-30 17:10:57 -06:00 |
William Vu
|
3e8cdd1f36
|
Polish up USER_ID and API_TOKEN options
|
2016-11-30 17:10:52 -06:00 |
Jin Qian
|
ec83a861c8
|
Fix issue #7640 where cisco SSL VPN not move despite server responded
Add the "return true" statement that was missing.
|
2016-11-30 16:25:13 -06:00 |
OJ
|
ebf5121359
|
Merge branch 'upstream/master' into add-bypassuac-eventvwr
|
2016-12-01 07:58:16 +10:00 |
OJ
|
6890e56b30
|
Remove call to missing function
|
2016-12-01 07:57:54 +10:00 |
David Maloney
|
2a065cd220
|
Land #7591, sinn3r's warbird check fix
Lands sinn3r's fix to the warbird license verification
check in the payload segment injector
|
2016-11-30 15:45:04 -06:00 |
jinq102030
|
f13d012ade
|
Merge pull request #7639 from wchen-r7/fix_7628
Fix #7628, concrete5_member_list HTML parser
|
2016-11-30 14:52:41 -06:00 |
wchen-r7
|
56505d2cc1
|
Resolve merge conflict
|
2016-11-30 14:33:23 -06:00 |
wchen-r7
|
c70c3701c5
|
Fix #7628, concrete5_member_list HTML parser
Fix #7628
|
2016-11-30 14:20:36 -06:00 |
William Webb
|
b6bb1995ad
|
Merge branch 'master' of github.com:rapid7/metasploit-framework into upstream-master
|
2016-11-30 12:00:45 -06:00 |
William Webb
|
c31758e0ea
|
Land #7627, Fix typo in payloads/linux/armle/mettle
|
2016-11-30 11:58:47 -06:00 |
wchen-r7
|
530e9a9bc6
|
Land #7633, fix dell_idrac to stop trying on a user after a valid login
|
2016-11-30 11:46:31 -06:00 |
David Maloney
|
5b80c5de6b
|
Land #7635, OJ's fix to UUID unpacking
fixes an issue with UUID packing that would
incorrectly trim off nullbytes
|
2016-11-30 11:19:33 -06:00 |
David Maloney
|
d1be2d735f
|
Land #7578, pdf-shaper exploit
Land lsato's work on the pdf-shaper buffer overflow
exploit
|
2016-11-30 11:13:12 -06:00 |
Tod Beardsley
|
43cd788350
|
Switch back to echo as cmdstager flavor
|
2016-11-30 10:18:09 -06:00 |
Tod Beardsley
|
b75fbd454a
|
Add missing peer in vprint_error
|
2016-11-30 07:59:41 -06:00 |
Tim
|
8f3fab4b1b
|
fix sleep and transport on android
|
2016-11-30 21:59:01 +08:00 |
Tod Beardsley
|
657d52951b
|
Linemax 63, switch to printf
|
2016-11-30 07:51:36 -06:00 |
Tim
|
78480e31e7
|
remove AutoLoadAndroid
|
2016-11-30 21:23:14 +08:00 |
Tim
|
b494d069f7
|
fix android/meterpreter/reverse_https
|
2016-11-30 20:53:09 +08:00 |
Tim
|
92751714c1
|
fix android/meterpreter/reverse_http
|
2016-11-30 20:12:00 +08:00 |
OJ
|
bdc2e7c3cd
|
Fix missing stager_config functions, payload sizes
|
2016-11-30 16:11:51 +10:00 |
OJ
|
e5db0f4610
|
Fix unpack causing puid breakage in some cases
|
2016-11-30 15:51:17 +10:00 |
OJ
|
3fad75641d
|
Final touches to make MSF happy with all refactorings
|
2016-11-30 11:30:59 +10:00 |
Tod Beardsley
|
08b9684c1a
|
Add a FORCE_EXPLOIT option for @FireFart
|
2016-11-29 16:37:13 -06:00 |
Tod Beardsley
|
57d156a5e2
|
Revert "XML encode the command passed"
This reverts commit 9952c0ac6f .
|
2016-11-29 16:24:26 -06:00 |
Tod Beardsley
|
b7904fe0cc
|
Oh silly delimiters and lack thereof
|
2016-11-29 15:53:05 -06:00 |
Tod Beardsley
|
9952c0ac6f
|
XML encode the command passed
|
2016-11-29 15:49:55 -06:00 |
Tod Beardsley
|
851aae3f15
|
Oops, wrong module
This reverts commit d55d2099c5 .
|
2016-11-29 15:15:18 -06:00 |
Tod Beardsley
|
d55d2099c5
|
Just one platform thanks
|
2016-11-29 15:08:45 -06:00 |
Tod Beardsley
|
4d6b2dfb46
|
Use CmdStager instead
Oh, and this is totally untested as of this commit.
|
2016-11-29 15:03:38 -06:00 |
Jin Qian
|
afed1f465e
|
Fix issue 7632 where MSF keeps trying after success.
Thanks to Wei who suggested adding "return :next_user" after success.
|
2016-11-29 14:57:15 -06:00 |
Tod Beardsley
|
8de17981c3
|
Get rid of the WiFi key stealer
|
2016-11-29 14:48:04 -06:00 |
Tod Beardsley
|
75bcf82a09
|
Never set DefaultPaylod, reverse target options
|
2016-11-29 14:43:10 -06:00 |
Tod Beardsley
|
f55f578f8c
|
Title, desc, authors, refs
|
2016-11-29 14:39:38 -06:00 |
David Maloney
|
3c9ebb97be
|
Land #7624, Wvu's style fixes
land's wvu's style and text fixes for the
OS X archived messages module
|
2016-11-29 14:05:05 -06:00 |
David Maloney
|
4c50a7c80d
|
Land #7630, Username Regex Fix
lands jin's fix for the username regex in
the concrete5 module
|
2016-11-29 14:00:27 -06:00 |
Javier Godinez
|
497e02955b
|
Fixed checking for access keys being retrieved
|
2016-11-29 11:08:55 -08:00 |
Jin Qian
|
1beeb99d44
|
Fix issue 7628, username extracted became garbled
Make the regular expression less aggressive.
|
2016-11-29 12:52:57 -06:00 |
Adam Cammack
|
878779e14c
|
Fix typo in payloads/linux/armle/mettle
|
2016-11-29 10:12:17 -06:00 |
Tod Beardsley
|
d691b86443
|
First commit of Kenzo's original exploit
This is a work in progress, and is merely the copy-paste
of the original PoC exploit from:
https://devicereversing.wordpress.com/2016/11/07/eirs-d1000-modem-is-wide-open-to-being-hacked/
|
2016-11-29 09:13:52 -06:00 |
OJ
|
834756c337
|
Rework android structure to function with the multi arch payload
|
2016-11-29 17:55:31 +10:00 |
Tim
|
090dac6d24
|
make the stdapi_fs_file_move test unconditional
|
2016-11-29 14:37:19 +08:00 |
Tim
|
94a15920ec
|
add test for file copy
|
2016-11-29 14:36:03 +08:00 |
Tim
|
468bf4696f
|
stdapi_fs_file_copy
|
2016-11-29 13:56:27 +08:00 |
OJ
|
bdfaaf01b2
|
Make multi work with https
|
2016-11-29 15:51:38 +10:00 |
OJ
|
bd8f8fd6cb
|
More rework of payload structure to handle multi arch handlers
|
2016-11-29 15:21:13 +10:00 |