Commit Graph

734 Commits (b016447ea68cf516e7148460b5617cd54e9e0968)

Author SHA1 Message Date
Shelby Pace 4ff023d825
Land #11243, Add ASan SUID Privesc 2019-01-22 13:54:45 -08:00
h00die 56d622e53d
land #11169 blueman priv esc on linux 2019-01-17 11:09:45 -06:00
Brent Cook 4533c86a4f
Land #11230, add JuicyPotato local privilege escalation 2019-01-17 08:48:45 -08:00
Jacob Robles 7711d2a700
Land #11206, add coldfusion ckeditor file upload 2019-01-10 05:30:05 -08:00
Jacob Robles 10a68a01bf
Land #11226, typo fixes in cisco_firepower_useradd 2019-01-10 04:54:04 -08:00
Jacob Robles 85f74e3ffc
Land #11148, Adding Module MailCleaner RCE 2019-01-08 12:14:09 -08:00
Shelby Pace 3fae01b403
Land #10444, add Consul rexec RCE module 2018-12-28 07:16:49 -08:00
Shelby Pace 11abb03056
Land #10443, add Consul service RCE module 2018-12-28 06:37:21 -08:00
Brent Cook a9e2f1f7d2
Land #11137, Clean up linux/local/vmware_alsa_config exploit module 2018-12-21 15:53:34 -08:00
Jacob Robles a0df69c94f
Land #11089, Erlang cookie rce exploit module 2018-12-19 06:16:51 -08:00
Shelby Pace fd2886b499
Land #11112, Fix bpf_priv_esc exploit module 2018-12-17 08:04:33 -08:00
Brent Cook 16e8ddf82d
Land #11119, Add WEBUI_PORT to hp_van_sdn_cmd_inject exploit 2018-12-13 14:19:19 -08:00
Wei Chen ec2b1c9995
Land #10944, Add macOS Safari exploit from pwn2own2018 2018-12-13 13:32:39 -08:00
Wei Chen 5ddd15f353
Land #10429, Add webdav delivery module 2018-12-12 11:33:45 -08:00
Shelby Pace b0569e7242
Land #10960, add wp duplicator code inject module 2018-12-11 10:06:00 -08:00
Jacob Robles 562ddb87a2
Land #11040, Add CyberLink LabelPrint Local BOF 2018-12-11 06:26:17 -08:00
Brendan Coles eaf483bdef
Land #11096, Replace WsfDelay typo with WfsDelay in docs 2018-12-10 02:54:50 -08:00
asoto-r7 9a29db90f1
Land #10947, HPE Intelligent Management Center Java Deserialization RCE 2018-12-03 15:09:49 -08:00
Brent Cook 67cddffc51
Land #11049, Add Emacs movemail local exploit 2018-12-03 14:41:28 -08:00
Jacob Robles e88d2a1fcd
Land #10954, apache spark unauth rce module 2018-11-29 12:01:59 -08:00
h00die f23774d62e
Land #9946 a UEB local priv escalation 2018-11-27 18:22:20 -08:00
William Vu ed17e2c42f
Land #11032, SMAP check for chocobo_root 2018-11-27 15:35:13 -08:00
Brent Cook 7daedb48f4
Land #10987, add exploit for PHP imap_open function against various web apps 2018-11-27 14:47:28 -08:00
Brent Cook 4c2772a5fc
Land #10994, Added exploit for CVE-2018-18955 2018-11-27 14:27:50 -08:00
Shelby Pace 8afbb1a21e
Land #10737, add TeamCity XML-RPC exploit module 2018-11-27 13:02:45 -08:00
Wei Chen 56e0c51897
Land #10965, Add the macOS LPE from pwn2own2018 (CVE-2018-4237) 2018-11-27 12:02:49 -08:00
Brent Cook 9c281f2b74
Land #10768, Exploit for Netgear CVE-2016-1555 2018-11-26 09:48:41 -08:00
Brendan Coles 3f8c2268a6
Land #11015, Fix payload and console check for Xorg_privesc Linux targets 2018-11-24 20:43:34 -08:00
Brent Cook a334878fd1
Land #10916, Xorg SUID privesc 2018-11-21 18:24:03 -08:00
Brent Cook b90d79040e
Land #10977, Add documentation and some enhancement to freesshd_authbypass module 2018-11-20 09:47:33 -08:00
Jacob Robles 77da5b145e
Land #10828, git submodule url exec CVE-2018-17456 2018-11-14 10:51:16 -08:00
Shelby Pace a90bea2551
Land #9631, add Jira plugin upload module 2018-11-13 13:36:30 -08:00
Brendan Coles f0136e5a42
Land #10767, Add Cisco Prime Infrastructure remote root exploit 2018-11-10 09:00:37 -08:00
Wei Chen 69e72e6a1f
Land #10847 - Add blueimp's jQuery (Arbitrary) File Upload
CVE-2018-9206
2018-11-05 09:39:35 -08:00
Brent Cook 549c835af5
Land #10836, Add Morris worm sendmail debug mode exploit 2018-11-02 09:22:22 -07:00
Brent Cook 1ae0455b2e
Land #10700, Add Morris worm fingerd exploit and VAX reverse shell 2018-11-02 09:22:21 -07:00
Wei Chen a43edc4fbf
Land #10864, Add Cisco WebEx RCE Modules 2018-10-25 12:33:06 -07:00
Wei Chen 3cbc33204c
Land #10664, add Windows SetImeInfoEx Win32k NULL Pointer Dereference 2018-10-18 21:02:13 -07:00
Wei Chen 7d04ebcf5f
Land #9642, support version 5 for GetGo Download Manager bof exploit 2018-10-15 13:49:36 -07:00
h00die fcc59c3600
Land #10668 rsh stack clash solaris priv esc 2018-10-14 07:36:58 -07:00
William Vu 34a1c48d7c
Land #10671, struts2_namespace_ognl updates
There are still some outstanding concerns, but I want to unblock this.
2018-10-12 09:16:44 -07:00
Jacob Robles 2f202583be
Land #10335, Add vlc_mkv exploit module 2018-10-10 11:49:11 -07:00
Shelby Pace ec5530ece1
Land #10672, Add COMMGR Buffer Overflow module 2018-10-08 08:07:41 -07:00
Brent Cook 2be1b87d0d
Land #9745, Add ifwatchd QNX privilege escalation exploit module 2018-10-06 02:06:28 -07:00
Brent Cook 1ff5d8f6bd
Land #10616, update Unitrends UEB module to support vulnerabilities in version 10 2018-10-05 14:23:01 -07:00
Brent Cook 5f43c7f3e9
Land #10745, Update lastore_daemon_dbus_priv_esc tested versions 2018-10-05 08:37:12 -07:00
bwatters-r7 0f4ef19555
Land #10418, Add DCOM/RPC NTLM Reflection (MS16-075) Via Reflective DLL
Merge branch 'land-10418' into upstream-master
2018-10-04 14:57:20 -07:00
Jacob Robles 9762f921b8
Land #10738, Add Zahir Enterprise 6 build 10b BOF 2018-10-04 09:03:40 -07:00
Jacob Robles ff06f81f89
Land #10704, Navigate CMS Unauthenticated RCE 2018-10-04 04:48:35 -07:00
Brent Cook bff3047e93
Land #10428, Update Windows MySQL UDF files, add docs 2018-09-24 19:13:53 -07:00