Tod Beardsley
|
4d3f871e9d
|
Land #2961, get_env and get_envs Post mixin
This unbreaks the changes introduced by #2782 by introducing
get_env and get_envs for shell sessions (not just meterpreter sessions).
|
2014-03-20 10:53:50 -05:00 |
Trevor Rosen
|
dd4b16ad60
|
Remove some dead code
|
2014-03-20 09:38:14 -05:00 |
Trevor Rosen
|
dc85a99fbd
|
report_loot now sets proper Mdm::Workspace
* Uses an Mdm::Workspace when passed one in conf hash
|
2014-03-20 09:27:09 -05:00 |
Spencer McIntyre
|
74398c4b6e
|
Allow using a single URI and/or a list of URIs
|
2014-03-20 09:54:02 -04:00 |
Michael Messner
|
4f1404eecc
|
reboot payload for mipsbe
|
2014-03-20 12:37:58 +01:00 |
xistence
|
2845f834c6
|
changed cookie retrieval to res.get_cookies
|
2014-03-20 16:39:26 +07:00 |
xistence
|
7bfb8e95e6
|
minor changes to seportal module
|
2014-03-20 13:44:39 +07:00 |
xistence
|
5ef49ff64b
|
SePortal 2.5 SQLi Remote Code Execution
|
2014-03-20 12:02:06 +07:00 |
Joshua Smith
|
a8d919feb0
|
use TARGET_URI if given, otherwise TARGET_URIS_FILE
|
2014-03-19 23:32:04 -05:00 |
Samuel Huckins
|
33ca577010
|
Zip Workspace imports now working.
MSP-9531
* Was trying to delete XML file, not sure why, running into permission
error
* General clarification and cleanup
|
2014-03-19 22:53:15 -05:00 |
sinn3r
|
c5158a3ccc
|
Update CVE
|
2014-03-19 22:13:23 -05:00 |
sinn3r
|
8c707b20e0
|
Add support for specific builds of MSIE 9 on Win 7 SP1
These IE9 versions are vulnerable to MS14-012 (see #3120). If we don't
add them, then os_detect might recognize the target as IE 8, and fail.
|
2014-03-19 21:54:36 -05:00 |
Brandon Perry
|
9b2cfb6c84
|
change default targeturi to something more universal
|
2014-03-19 21:03:50 -05:00 |
Brandon Perry
|
b52a535609
|
add official url
|
2014-03-19 20:41:32 -05:00 |
Brandon Perry
|
ab42cb1bff
|
better error handling for the user
|
2014-03-19 18:46:57 -05:00 |
William Vu
|
b79920ba8f
|
Land #3089, InvalidWordCount fix for smb_login
[FixRM #8730]
|
2014-03-19 16:12:56 -05:00 |
Samuel Huckins
|
cc4c958d58
|
Merge remote-tracking branch 'metasploit-framework/master' into masked-cred-format-update
|
2014-03-19 15:47:46 -05:00 |
Tod Beardsley
|
c1cbeff5f0
|
Land #3122, lots of Meterpreter updates
This lands the binaries built from Meterpreter as of:
rapid7/meterpreter#80 , also known as
commit 5addac75741fadfff35f4f7839cee6fd69705455
as well as the functional changes in:
rapid7/metasploit-framework#2782
rapid7/metasploit-framework#2889
rapid7/metasploit-framework#3061
rapid7/metasploit-framework#3085
|
2014-03-19 15:35:49 -05:00 |
Samuel Huckins
|
a78bc822d0
|
Gemfile update for new MDM version
* Updated MDM is live
|
2014-03-19 15:04:20 -05:00 |
sinn3r
|
fe0b76e24e
|
Land #2994 - OWA 2013 support
|
2014-03-19 13:16:37 -05:00 |
jvazquez-r7
|
d6faf20981
|
Make title more accurate
|
2014-03-19 12:43:34 -05:00 |
jvazquez-r7
|
144b86fee3
|
Add reference
|
2014-03-19 12:17:53 -05:00 |
jvazquez-r7
|
4568c3c96b
|
Land #3107, @xistence's exploit for Quantum DXi
|
2014-03-19 12:15:41 -05:00 |
jvazquez-r7
|
27d142b387
|
Solve conflict by keeping file
|
2014-03-19 12:15:05 -05:00 |
jvazquez-r7
|
fb645b6692
|
Clean code
|
2014-03-19 12:06:20 -05:00 |
jvazquez-r7
|
0a795ab602
|
Land #3106, @xistence's exploit for Array Networks devices
|
2014-03-19 10:49:03 -05:00 |
jvazquez-r7
|
0e27d75e60
|
Code clean up
|
2014-03-19 10:48:25 -05:00 |
Brandon Perry
|
2ef2f9b47c
|
use vars_get
|
2014-03-19 07:51:34 -07:00 |
Brandon Perry
|
920b2da720
|
Merge branch 'master' into joomla_sqli
|
2014-03-19 07:43:32 -07:00 |
Tod Beardsley
|
05436dc2c5
|
Refresh binaries for Meterpreter
This includes:
rapid7/meterpreter#69
rapid7/meterpreter#70
rapid7/meterpreter#75
rapid7/meterpreter#77
rapid7/meterpreter#78
As of commit: 45bcbd13a1e0215647f6a61631652b686931bba8
|
2014-03-19 08:57:04 -05:00 |
Tod Beardsley
|
8e7f12e30e
|
Land #3085, service_control support
This depends on rapid7/meterpreter#77 to function
|
2014-03-19 08:43:17 -05:00 |
Tod Beardsley
|
04b5d71fa5
|
Land #3061, enhance clipboard dump
This depends on rapid7/meterpreter#75 to function
|
2014-03-19 08:42:36 -05:00 |
Tod Beardsley
|
35b94b04bf
|
Land #2889, WMI support
This depends on rapid7/meterpreter#69 to actually be useful.
|
2014-03-19 08:42:03 -05:00 |
Tod Beardsley
|
d27264b402
|
Land #2782, fix expand_path abuse
|
2014-03-19 08:41:28 -05:00 |
xistence
|
056ce5d097
|
removed file which did not belong in this pull request
|
2014-03-19 15:04:19 +07:00 |
sinn3r
|
a93265d5e9
|
Land #3117 - Add support for firefox 28 to os.js
|
2014-03-19 00:19:42 -05:00 |
sinn3r
|
2e76faa076
|
Add MS14-012 Internet Explorer Use-After-Free Exploit Module
Add MS14-012 IE UAF.
|
2014-03-18 17:55:56 -05:00 |
jvazquez-r7
|
379c0efd5a
|
Update POP chain documentation
|
2014-03-18 16:29:30 -05:00 |
jvazquez-r7
|
77c128fbc5
|
Fix disclosure date and add ref
|
2014-03-18 16:21:44 -05:00 |
jvazquez-r7
|
b6e8bb62bb
|
Switch exploitation technique to use default available classes
|
2014-03-18 16:07:50 -05:00 |
Tod Beardsley
|
825d67541d
|
Land #3119, LICENSE update for bcrypt
|
2014-03-18 15:05:14 -05:00 |
Brandon Turner
|
c75ff1d829
|
Update LICENSE file with latest gems
|
2014-03-18 14:56:06 -05:00 |
William Vu
|
dfd3a81566
|
Land #3111, hash rockets shouldn't be in refs
|
2014-03-18 14:25:04 -05:00 |
David Maloney
|
617e916511
|
fix specs from change
spec changes to go with the previous code change
|
2014-03-18 13:52:17 -05:00 |
David Maloney
|
130474fdfd
|
Fix java payload generation
jsp payloads are java but do not generate JARs
also we were not merging datastore options in properly
|
2014-03-18 13:41:27 -05:00 |
joev
|
8e4708b51b
|
Add support for firefox 28.
|
2014-03-18 11:26:24 -05:00 |
jvazquez-r7
|
38176ad67d
|
Land #3109, @xistence's Loadbalancer.org Enterprise VA applicance exploit
|
2014-03-18 06:53:26 -05:00 |
jvazquez-r7
|
ddd923793a
|
Do minor clean up
|
2014-03-18 06:52:50 -05:00 |
jvazquez-r7
|
ad49df4301
|
Register RHOST
|
2014-03-18 06:17:41 -05:00 |
jvazquez-r7
|
600338bd29
|
Land #3108, @xistence's exploit for Quantum vmPRO shell-escape
|
2014-03-18 06:12:18 -05:00 |