Commit Graph

1667 Commits (cf33f482a1fae6fff98978be21326beeccd7fd57)

Author SHA1 Message Date
Wei Chen 56e0c51897
Land #10965, Add the macOS LPE from pwn2own2018 (CVE-2018-4237) 2018-11-27 12:02:49 -08:00
Wei Chen 659e7d7a59
Land #10975, More Capture Docs 2018-11-26 11:53:39 -08:00
Brent Cook 9c281f2b74
Land #10768, Exploit for Netgear CVE-2016-1555 2018-11-26 09:48:41 -08:00
Brent Cook 9acb0cd689
Land #9915, Cleanup and improvements to influxdb_enum 2018-11-26 08:30:08 -08:00
Green-m a9eb87efbd
Land #11020, update php reverse_tcp payload doc. 2018-11-26 02:13:15 -08:00
Brendan Coles 3f8c2268a6
Land #11015, Fix payload and console check for Xorg_privesc Linux targets 2018-11-24 20:43:34 -08:00
Brent Cook a334878fd1
Land #10916, Xorg SUID privesc 2018-11-21 18:24:03 -08:00
Brent Cook 4c8d3918cc
Land #10981, start printjob docs and bug fixes 2018-11-21 15:20:07 -08:00
asoto-r7 82abc7b76b
Land #10876, ibm_mq_enum: IBM WebSphere MQ Name and Version Enumeration 2018-11-21 15:20:06 -08:00
asoto-r7 53a6354a45
Land #10875, IBM WebSphere MQ Channel Name Bruteforce auxiliary module 2018-11-20 14:27:06 -08:00
Brent Cook b90d79040e
Land #10977, Add documentation and some enhancement to freesshd_authbypass module 2018-11-20 09:47:33 -08:00
Shelby Pace b565a6ac47
Land #10558, Add IIS ShortName Scanner module 2018-11-20 06:29:00 -08:00
h00die ff7f10b637
Land #10572 eaton ssh private key scanner 2018-11-15 14:19:16 -08:00
Jacob Robles 77da5b145e
Land #10828, git submodule url exec CVE-2018-17456 2018-11-14 10:51:16 -08:00
Shelby Pace a90bea2551
Land #9631, add Jira plugin upload module 2018-11-13 13:36:30 -08:00
Brent Cook 4c31392785
Land #10607, Add External Module: office365userenum.py 2018-11-13 09:00:01 -08:00
Green-m 68688c88f7
Land #10938, add docs for modules and fix bug.
Add docs for auxiliary module http_basic/imap/mysql, and fix a bug
in modules/auxiliary/server/capture/mysql.rb
2018-11-13 09:00:01 -08:00
Brendan Coles f0136e5a42
Land #10767, Add Cisco Prime Infrastructure remote root exploit 2018-11-10 09:00:37 -08:00
Wei Chen 69e72e6a1f
Land #10847 - Add blueimp's jQuery (Arbitrary) File Upload
CVE-2018-9206
2018-11-05 09:39:35 -08:00
Brent Cook c2405c2750
Land #10888, Fix Net::SSH::CommandStream session open failure 2018-11-05 09:16:54 -08:00
Green-m f29dc68353
Land #10919, Add doc for ftp capture module.
And add a custom option banner for it.
2018-11-04 22:20:29 -08:00
Jacob Robles ea1c4596d9
Land #10901, Add modules for iOS images and texts 2018-11-02 11:49:40 -07:00
Brent Cook 549c835af5
Land #10836, Add Morris worm sendmail debug mode exploit 2018-11-02 09:22:22 -07:00
Brent Cook 1ae0455b2e
Land #10700, Add Morris worm fingerd exploit and VAX reverse shell 2018-11-02 09:22:21 -07:00
bwatters-r7 4a9f6f5d06
Land #10561, Add Windows local privilege escalation - CVE-2018-0824
Merge branch 'land-10561' into upstream-master
2018-10-25 12:33:06 -07:00
Wei Chen a43edc4fbf
Land #10864, Add Cisco WebEx RCE Modules 2018-10-25 12:33:06 -07:00
Brent Cook faf1a44cc4
Land #10848, improve play_youtube post module 2018-10-23 14:48:44 -07:00
Brent Cook 2c347d51b1
Land #10855, Enable non-session command output for SSH modules 2018-10-23 16:44:03 -05:00
Brent Cook 833807973c
Land #10835, libssh fingerprint improvements 2018-10-19 19:13:36 -07:00
Brent Cook f88790c2c0
Land #10820, Add libssh authentication bypass scanner/"exploit" 2018-10-19 12:03:28 -07:00
Wei Chen 3cbc33204c
Land #10664, add Windows SetImeInfoEx Win32k NULL Pointer Dereference 2018-10-18 21:02:13 -07:00
Wei Chen 7d04ebcf5f
Land #9642, support version 5 for GetGo Download Manager bof exploit 2018-10-15 13:49:36 -07:00
Brendan Coles 52a919c361
Land #10800, Add docs for auxiliary/scanner/snmp/ Cisco modules 2018-10-15 00:06:43 -07:00
Brendan Coles c57a9dde08
Land #10797, Add docs for auxiliary/scanner/sip/options_tcp module 2018-10-15 00:02:53 -07:00
h00die fcc59c3600
Land #10668 rsh stack clash solaris priv esc 2018-10-14 07:36:58 -07:00
William Vu 34a1c48d7c
Land #10671, struts2_namespace_ognl updates
There are still some outstanding concerns, but I want to unblock this.
2018-10-12 09:16:44 -07:00
Jacob Robles 2f202583be
Land #10335, Add vlc_mkv exploit module 2018-10-10 11:49:11 -07:00
Shelby Pace ec5530ece1
Land #10672, Add COMMGR Buffer Overflow module 2018-10-08 08:07:41 -07:00
Brent Cook 2be1b87d0d
Land #9745, Add ifwatchd QNX privilege escalation exploit module 2018-10-06 02:06:28 -07:00
Brent Cook 1ff5d8f6bd
Land #10616, update Unitrends UEB module to support vulnerabilities in version 10 2018-10-05 14:23:01 -07:00
Brent Cook 5f43c7f3e9
Land #10745, Update lastore_daemon_dbus_priv_esc tested versions 2018-10-05 08:37:12 -07:00
bwatters-r7 0f4ef19555
Land #10418, Add DCOM/RPC NTLM Reflection (MS16-075) Via Reflective DLL
Merge branch 'land-10418' into upstream-master
2018-10-04 14:57:20 -07:00
Jacob Robles 9762f921b8
Land #10738, Add Zahir Enterprise 6 build 10b BOF 2018-10-04 09:03:40 -07:00
Jacob Robles ff06f81f89
Land #10704, Navigate CMS Unauthenticated RCE 2018-10-04 04:48:35 -07:00
Brent Cook 3ad5bd429a
Land #10732, add api key for android wlan_geolocate 2018-10-02 11:46:30 -07:00
Tim W d340eeecf9
Land #10427, add OSX VNC password gather module 2018-10-02 11:46:30 -07:00
Tim W c2d9677504
Land #10723, fix another typo in windows reverse_tcp docs 2018-10-02 11:46:30 -07:00
Tim W 5ea9507604
Land #10722, fix typo in windows reverse_tcp docs 2018-10-02 11:46:29 -07:00
Brent Cook bff3047e93
Land #10428, Update Windows MySQL UDF files, add docs 2018-09-24 19:13:53 -07:00
Adam Cammack d904fcb866
Land #10695, Add docs for Apple iOS WebKit DoS 2018-09-24 10:48:42 -07:00
h00die c3f335ebb7
Land #10663 extremeparr solaris LPE 2018-09-24 10:48:42 -07:00
bwatters-r7 2b194e2b47
Land #10643, CVE-2018-8440 ALPC Scheduler
Merge branch 'land-10643' into upstream-master
2018-09-24 10:48:41 -07:00
Brendan Coles 53c1adcb41
Land #10628, Add Solaris srsexec Arbitrary File Reader module 2018-09-24 10:48:41 -07:00
William Vu 785cf9e5aa
Land #10670, Pimcore SQLi module 2018-09-19 18:52:40 -07:00
William Vu 4ca0566e10
Land #10673, dolibarr_list_creds{,_sqli} rename 2018-09-19 16:57:51 -07:00
h00die fd59cbb61f
Land #10620 Solaris 10 LPE for libnspr 2018-09-17 15:12:51 -07:00
Jacob Robles 5861087061
Land #10598, Store Credentials Found with PhpMyAdmin Password Extractor 2018-09-10 09:51:51 -07:00
Wei Chen 3e801c22fb
Land #10546, Add Apache Struts exploit: CVE-2018-11776 2018-09-07 12:56:02 -07:00
Adam Cammack 9e3f4744f7
Land #10602, Fix windows/shell/reverse_ord_tcp doc 2018-09-07 10:08:28 -07:00
Wei Chen eb39f6da51
Land #10564, Add Ghostscript exploit from taviso 2018-09-05 19:09:11 -07:00
Brent Cook a2eb43ab83
Land #10474, add documention for windows/shell/reverse_ord_tcp 2018-09-05 07:08:02 -07:00
Wei Chen 8897a5d7c6
Land #10568, Update weblogic module docs 2018-08-31 12:07:12 -07:00
Wei Chen d1d308e542
Land #10565, Add Dolibarr ERP/CRM Auxiliary Module 2018-08-31 11:49:23 -07:00
Shelby Pace 2ecff39be4
Land #10484, Add PhpMyAdmin password extractor 2018-08-30 10:18:38 -07:00
Shelby Pace bc87643ea3
Land #10482, Add Network Manager VPNC Privesc 2018-08-30 08:49:38 -07:00
Jacob Robles d7728afe42
Land #10540, weblogic_deserialize, add check method and linux target 2018-08-30 04:13:58 -07:00
Jacob Robles 7a99fc7066
Land #10545, foxit fix generated strings, update doc 2018-08-30 03:58:19 -07:00
bwatters-r7 631e8bf110
Land #8983, Add peinjector post module
Merge branch 'land-8983' into upstream-master
2018-08-28 16:55:01 -07:00
William Vu 415379e7ee
Land #9364, HP PJL/SNMP CVE-2017-2741 exploit
Finally!
2018-08-23 20:50:23 -07:00
h00die 179b874763
Land #10467 documentation for postgresql hashdump 2018-08-23 18:37:01 -07:00
h00die e444aa0489
Land #10466 docs for postgres_version 2018-08-23 18:12:41 -07:00
h00die 93f68e817a
Land #10517 updated docs for CloudMe Sync 2018-08-23 17:57:30 -07:00
Wei Chen 7b7c5a73c4
Land #10504, add Foxit Reader UAF Module and Docs 2018-08-23 16:57:43 -07:00
William Vu 0739892cc8
Land #10498, module doc for ssh_enumusers 2018-08-21 09:05:07 -07:00
Tim W f295b22290
Land #10313, add linux autostart persistence module 2018-08-20 03:19:57 -07:00
Tim W e5ef254155
Land #10320, add module for persistence in /etc/rc.local 2018-08-19 00:33:19 -07:00
William Vu c91eff48fb
Land #10472, marked_redos module doc fixes 2018-08-16 13:43:26 -07:00
William Vu e1097f7e38
Land #10120, npm "marked" ReDoS module 2018-08-16 13:43:26 -07:00
h00die 76e08b9c4a
Land #10457 docs for elasticsearch indices_enum 2018-08-15 11:40:29 -07:00
h00die 91c61bb692
Land #10454 updates to cgit exploit docs 2018-08-15 11:40:29 -07:00
Jacob Robles 9617c79f44
Land #10420, cgit < 1.2.1 Directory Traversal 2018-08-13 14:28:21 -07:00
Shelby Pace 1a86d57bce
Land #10404, Add Path Traversal Oracle GlassFish 2018-08-13 09:18:05 -07:00
Wei Chen 8b75c7d9ab
Land #10436, Add WebLogic exploit (CVE-2018-2628) 2018-08-09 12:54:19 -07:00
Brent Cook b42cf88276
Land #10386, Add IEC104 client module 2018-08-04 05:44:48 -07:00
Brent Cook 3fd0119d27
Land #9692, Add DoS module for Siemens Siprotec 4 2018-08-04 05:23:03 -07:00
Brendan Coles 9ac0d0cf6e
Land #10358, Add Dicoogle PACS Directory Traversal scanner module 2018-08-03 22:30:03 -07:00
Wei Chen 937174d321
Land #10412, Add Cisco directory traversal auxiliary module 2018-08-02 14:47:24 -07:00
Tim W 65fcdcfd2f
Land #9884, add linux ufo priv esc module 2018-08-02 02:56:27 -07:00
Wei Chen 580f4cf509
Land #10255, Adding Micro Focus Secure Messaging Gateway RCE 2018-07-30 19:08:43 -07:00
William Vu 0bc84bb6c6
Land #10305, SonicWall XML-RPC RCE 2018-07-30 12:15:59 -07:00
Jacob Robles 7e180a390c
Land #10060, vTiger CRM v6.3.0 Upload RCE 2018-07-30 10:34:17 -07:00
Shelby Pace ea2a9081a6
Land #10247, add WordPress Arbitrary File Deletion 2018-07-30 07:09:04 -07:00
Wei Chen b42545a153
Land #10387, Update mov_ss and add mov_ss_dll 2018-07-27 12:55:43 -07:00
Wei Chen 3a67d89711
Land #10383, Add WP Responsive Thumbnail Slider Plugin Exploit Module 2018-07-26 21:56:35 -07:00
Brent Cook e74ef65aa5
Land #9964, android post module to extract subscriber info 2018-07-26 15:00:23 -07:00
Wei Chen 5fce9d8222
Land #10300, Add root exploit for Axis network cameras 2018-07-25 12:47:50 -07:00
William Vu 68272c410e
Land #10357, CouchDB improvements and docs 2018-07-24 22:59:52 -07:00
Wei Chen 3fbd4f8f2f
Land #10368, PhpMyAdmin Login Scanner Module 2018-07-24 21:27:32 -07:00
Brent Cook e9b04b9750
Land #10362, Fix reporting in backup_file, add more docs 2018-07-23 16:27:45 -07:00
Wei Chen e075836ad5
Land #10346, update check method and doc for CMS Made Simple 2018-07-20 15:49:07 -07:00