Commit Graph

25827 Commits (c76714ccc6744962b0a315d33975804ab1fef7cf)

Author SHA1 Message Date
William Vu c76714ccc6 Add Reliability REPEATABLE_SESSION to Wemo exploit
Notes copied from auxiliary/admin/wemo/crockpot where it didn't apply.
2019-02-22 13:11:59 -06:00
Jacob Robles 5214b90fdf
Land #11292, Add exploit for Nuuo CMS SQL injection 2019-02-21 11:05:53 -06:00
Jacob Robles 1cd7dc8bc9
Update rank, add note 2019-02-21 10:12:02 -06:00
Jacob Robles 696640a340
Timeout and cleanup files 2019-02-21 06:48:10 -06:00
Jacob Robles 4a4637d7a3
Move execute shell 2019-02-21 06:48:09 -06:00
Jacob Robles c179e5cdad
Land #11291, Add Nuuo CMS session bruteforcing module 2019-02-20 09:13:33 -06:00
Jacob Robles 49307ae6c7
Deregister unused options 2019-02-20 08:09:06 -06:00
Jacob Robles 1acc565335
Land #11290, Add Nuuo CMS file upload exploit 2019-02-20 07:43:37 -06:00
Jacob Robles bffacff78c
Land #11293, Add Nuuo CMS file download 2019-02-20 07:06:49 -06:00
Wei Chen 661e78beed
Land #11409, Add Belkin Wemo UPnP RCE 2019-02-19 13:47:18 -06:00
William Vu 0c8b260737 Revert ARCH_CMD payload to cmd/unix/generic
There is no telnetd, so cmd/unix/bind_busybox_telnetd won't work.
2019-02-19 13:23:25 -06:00
Jacob Robles 6d619217c5
Land #11430, Deregister RHOSTS instead of RHOST 2019-02-19 13:10:07 -06:00
Jacob Robles ce02d98dce
Minor changes
aux:nuuo_cms_file_download
2019-02-19 12:33:37 -06:00
Jacob Robles 73048edd97
Minor updates
exploit:nuuo_cms_sqli
2019-02-19 12:26:31 -06:00
William Vu bad53aeaf1 Genericize exploit (less Crock-Pot verbiage) 2019-02-19 12:13:08 -06:00
Jacob Robles 2b71410807
Minor updates
exploit:nuuo_cms_fu
2019-02-19 12:11:50 -06:00
Jacob Robles e383bc2763
Minor updates
aux:nuuo_cms_bruteforce
2019-02-19 10:24:15 -06:00
Rob Fuller db48f4bb56
Deregister RHOSTS instead of RHOST
Fixes this module now that the RHOSTS changes are in effect.
2019-02-18 14:59:29 -05:00
John Q. Public 20f208aa53
Changed print_status to print_good on line 87
Changed print_status to print_good on line 87
2019-02-16 14:42:12 -06:00
William Vu 1be838d1fd Add Belkin Wemo UPnP RCE (tested on Crock-Pot) 2019-02-14 12:45:36 -06:00
William Vu 3648f598c7
Land #11399, cisco_rv320_config updates 2019-02-13 17:00:35 -06:00
asoto-r7 e671fbd037
cisco_rv320_config: Updated documentation and incorporating team feedback 2019-02-13 15:45:48 -06:00
Wei Chen 85066938df
Land #11157, Add Windows Gather Power Shell History module 2019-02-13 12:39:28 -06:00
Wei Chen 366d060b5d Minor changes for psreadline_history 2019-02-13 12:38:36 -06:00
Brent Cook 930d1fb78a
Land #11351, many new John the Ripper module improvements 2019-02-13 03:05:14 -06:00
Wei Chen cdc0728c44
Land #10731, Add Crock-Pot slow cooker remote control 2019-02-12 15:11:01 -06:00
William Vu 1ef451c3e6 Correct cook time to minutes, not seconds 2019-02-12 13:29:52 -06:00
William Vu a2758cc187 Actually implement ForceExploit 2019-02-12 12:18:26 -06:00
Brent Cook 7bad1eefd7
Land #11335, Update hash parsing formats for JTR 2019-02-12 08:32:47 -06:00
bwatters 2820da5e1b
Update Cache Sizes 2019-02-11 15:41:04 -06:00
William Vu 237a42b633 Refactor check method 2019-02-11 14:31:19 -06:00
Wei Chen 810592afd7
Land #11220, Add new PCOM module to send admin commands 2019-02-11 14:03:06 -06:00
Wei Chen 160856bc42 Move module 2019-02-11 13:46:00 -06:00
Wei Chen 4b177b607f Cosmetic cleanup 2019-02-11 13:44:46 -06:00
Wei Chen c5bff76dc7 Cosmetic changes for office_exel_slk module and documentation 2019-02-11 12:37:17 -06:00
Wei Chen 18afc8f546
Bring PR 11249 up to date with upstream master 2019-02-11 12:19:21 -06:00
Tim W f589db6831
Land #11152, add macOS adobe flash player type confusion RCE 2019-02-09 18:46:48 +08:00
Tim W 5c1f4a4703 fix include -> include? 2019-02-09 18:46:35 +08:00
Wei Chen ab5c59f3ba
Land #11219, New PCOM client module 2019-02-08 19:26:25 -06:00
Wei Chen c9d18b1613 Make cosmetic changes 2019-02-08 19:22:48 -06:00
Wei Chen a380bb6df1
Land #11239, Add check for writable and nosuid WritableDir 2019-02-08 19:14:54 -06:00
Wei Chen 18a4af1d1d
Land #11279, improve imap_open exploit to be more robust 2019-02-08 18:28:08 -06:00
Wei Chen bb97a5eba0
Land #11282, Support to retrieve data from ListConfigFiles SAP webmethod 2019-02-08 18:01:29 -06:00
Brent Cook 016ef1116e
Land #11345, Add Solaris pfexec Upgrade Shell module 2019-02-08 14:19:15 -06:00
h00die 25af2b4a6b \s over \r\n ipcamera 2019-02-07 15:14:13 -05:00
h00die 24b899d6d2 Merge branch 'master' of https://github.com/rapid7/metasploit-framework into ipcamera 2019-02-07 14:33:39 -05:00
Brent Cook eab31eba4a update to latest mettle with dylib support 2019-02-07 09:33:36 -06:00
Brent Cook 5fc7167beb Merge remote-tracking branch 'upstream/master' into land-10812- 2019-02-07 09:31:02 -06:00
Brent Cook e0f597f25f
fix license URL 2019-02-07 08:18:04 -06:00
William Vu 9676ed17ba
Land #11366, Cisco RV320/RV325 config dumper 2019-02-07 00:01:46 -06:00