Commit Graph

2289 Commits (d72b6fc3cb085cd0dee818983b6ad812ded472f8)

Author SHA1 Message Date
Max Michels 6fac0ecdcb
documentation for fortinet ssl vpn module added 2019-02-19 22:42:04 +00:00
Wei Chen 661e78beed
Land #11409, Add Belkin Wemo UPnP RCE 2019-02-19 13:47:18 -06:00
Jacob Robles 9b78cb034e
Land #11439, Add telnet module docs 2019-02-19 13:06:45 -06:00
Jacob Robles 8861396528
Land #11436, Add HTTP module docs 2019-02-19 13:01:21 -06:00
Jacob Robles ce6e41dc89
Land #11437, Add winrm docs 2019-02-19 12:58:14 -06:00
Jacob Robles 1ab89a84e6
Update doc 2019-02-19 12:36:30 -06:00
y_k_oo7 ff1d00b880 Added Telnet Modules Docs 2019-02-20 00:05:09 +05:30
Jacob Robles 2e28ffeeb7
Doc update 2019-02-19 12:30:39 -06:00
Jacob Robles be7ecd85fb
Doc update 2019-02-19 12:23:49 -06:00
Jacob Robles 4d5bad7c96
Update doc 2019-02-19 12:20:10 -06:00
William Vu bad53aeaf1 Genericize exploit (less Crock-Pot verbiage) 2019-02-19 12:13:08 -06:00
y_k_oo7 fb46502457 Adding auxiliary/scanner/snmp modules docs 2019-02-19 23:23:34 +05:30
Jacob Robles 049b9fa032
Fix doc again... 2019-02-19 10:59:02 -06:00
Jacob Robles 173bb5d38b
Fix doc 2019-02-19 10:57:16 -06:00
Jacob Robles 7fa5f56bb8
Update documentation 2019-02-19 10:50:14 -06:00
y_k_007 b50b2a7479
Updated http_put 2019-02-19 20:16:26 +05:30
bcoles 30ab3c16c3
Update documentation/modules/auxiliary/scanner/http/http_put.md
Co-Authored-By: Yashvendra <yashkashyap00720@gmail.com>
2019-02-19 14:32:11 +00:00
bcoles 806ba2c9aa
Update documentation/modules/auxiliary/scanner/winrm/winrm_auth_methods.md
Co-Authored-By: Yashvendra <yashkashyap00720@gmail.com>
2019-02-19 14:13:49 +00:00
y_k_oo7 6916b56641 Added auxiliary/scanner/winrm docs 2019-02-19 19:10:28 +05:30
y_k_oo7 b8323f7372 Updated Docs 2019-02-19 18:34:32 +05:30
y_k_oo7 34b0778539 Adding Http Modules Docs 2019-02-19 17:24:33 +05:30
William Vu e81791275e Add module doc 2019-02-14 16:33:56 -06:00
h00die ee96fe31f9 spelling fixes 2019-02-14 16:10:12 -05:00
Brendan Coles 9ebc3ba930 Add manageengine_deviceexpert_user_creds docs 2019-02-14 12:58:54 +00:00
h00die 69288e5f39
Land #11384 docs for dir_listing 2019-02-13 20:36:44 -05:00
h00die 53e5f882f7 doc cleanup 2019-02-13 20:35:48 -05:00
William Vu 3648f598c7
Land #11399, cisco_rv320_config updates 2019-02-13 17:00:35 -06:00
asoto-r7 b0cf440555
Fixing some old IP addresses 2019-02-13 16:13:10 -06:00
asoto-r7 e671fbd037
cisco_rv320_config: Updated documentation and incorporating team feedback 2019-02-13 15:45:48 -06:00
Wei Chen 85066938df
Land #11157, Add Windows Gather Power Shell History module 2019-02-13 12:39:28 -06:00
y_k_007 b04c63b9c6
Doc for auxiliary/scanner/http/options module 2019-02-13 17:18:07 +05:30
Brent Cook 930d1fb78a
Land #11351, many new John the Ripper module improvements 2019-02-13 03:05:14 -06:00
Wei Chen cdc0728c44
Land #10731, Add Crock-Pot slow cooker remote control 2019-02-12 15:11:01 -06:00
William Vu 464424e0f7 Update module doc 2019-02-12 13:33:57 -06:00
William Vu 1ef451c3e6 Correct cook time to minutes, not seconds 2019-02-12 13:29:52 -06:00
William Vu 711c774b43 Document DefangedMode 2019-02-12 12:18:26 -06:00
y_k_007 f731acc5e7
Added the verification instruction 2019-02-12 23:26:57 +05:30
h00die f0a757b647 fix up jtr docs 2019-02-11 19:50:03 -05:00
Wei Chen 810592afd7
Land #11220, Add new PCOM module to send admin commands 2019-02-11 14:03:06 -06:00
Wei Chen c91bf3ee9e Move documentation to the right file type 2019-02-11 14:01:57 -06:00
Wei Chen c5bff76dc7 Cosmetic changes for office_exel_slk module and documentation 2019-02-11 12:37:17 -06:00
Wei Chen 18afc8f546
Bring PR 11249 up to date with upstream master 2019-02-11 12:19:21 -06:00
y_k_007 7119d3d7e8
Documentation for dir-listing module. 2019-02-11 20:16:04 +05:30
rwincey f1675cddad Documentation 2019-02-10 23:16:45 -05:00
Imran E. Dawoodjee 6d0797986b
PowerShell check less strict, updated docs. 2019-02-10 14:26:13 +08:00
Wei Chen ab5c59f3ba
Land #11219, New PCOM client module 2019-02-08 19:26:25 -06:00
Wei Chen 18a4af1d1d
Land #11279, improve imap_open exploit to be more robust 2019-02-08 18:28:08 -06:00
Wei Chen bb97a5eba0
Land #11282, Support to retrieve data from ListConfigFiles SAP webmethod 2019-02-08 18:01:29 -06:00
Brent Cook 016ef1116e
Land #11345, Add Solaris pfexec Upgrade Shell module 2019-02-08 14:19:15 -06:00
Wei Chen 3138a892cf
Land #11371, Add auxiliary/scanner/http/rips_traversal docs 2019-02-08 13:49:20 -06:00
Brendan Coles affd8eec6b Add auxiliary/scanner/http/rips_traversal docs 2019-02-08 13:56:36 +00:00
h00die 24b899d6d2 Merge branch 'master' of https://github.com/rapid7/metasploit-framework into ipcamera 2019-02-07 14:33:39 -05:00
William Vu 9676ed17ba
Land #11366, Cisco RV320/RV325 config dumper 2019-02-07 00:01:46 -06:00
asoto-r7 0f3a2c15f3
Fixed numbered bulleted list 2019-02-06 23:51:09 -06:00
asoto-r7 666fd3ef95
Updated path in docs 2019-02-06 23:39:36 -06:00
asoto-r7 35b591a4d1
Moved files to be consistent wtih other 'auxiliary/gather' modules 2019-02-06 23:36:41 -06:00
asoto-r7 4d76c7c37f
Fixed documentation typo 2019-02-06 22:16:32 -06:00
asoto-r7 95eb38be24
Clarified documentation 2019-02-06 22:14:21 -06:00
asoto-r7 403f8953ec
Initial documentation 2019-02-06 22:11:40 -06:00
Brendan Coles 51f8259206
Land #11331, Add C2S DVR Management Password Disclosure module 2019-02-07 01:41:10 +00:00
William Vu 16a58ab3c3 Merge remote-tracking branch 'upstream/master' into feature/crockpot 2019-02-05 20:48:05 -06:00
h00die a0d668244b update ipcamera docs 2019-02-05 05:12:03 -05:00
h00die fbd81dd6aa ipcamera password disclosures 2019-02-03 13:40:22 -05:00
h00die 748e1468b3 creds upgrade and apply_pot 2019-02-03 10:17:25 -05:00
Brendan Coles 46230efcd8 Update documentation 2019-02-03 06:18:18 +00:00
Brendan Coles 9c3368f325 Add Evince CBT File Command Injection module 2019-02-03 05:38:56 +00:00
Brendan Coles 787c4400e4 Add Solaris pfexec Upgrade Shell module 2019-02-01 22:58:21 +00:00
William Vu 181d61621f Count to five correctly 2019-02-01 14:40:43 -06:00
spinfoo 07e2f9c166 added documentation 2019-01-31 19:24:47 +01:00
Jon Hart 603d2a0c04
Add docs 2019-01-30 14:26:15 -08:00
h00die febb049668 more info for c2s 2019-01-29 16:36:06 -05:00
h00die 4c14815343 c2s dvr password disclosure 2019-01-29 16:18:30 -05:00
h00die 9538330f94 remove crypt16 from docs 2019-01-25 14:32:33 -05:00
h00die 9930edf704 jtr modernizations 2019-01-25 14:07:24 -05:00
Carter Brainerd ddb46638f7
Fix verification steps numbering 2019-01-22 20:44:18 -05:00
Shelby Pace 2ae6142de7
Land #11243, Add ASan SUID Privesc 2019-01-22 15:50:53 -06:00
Pedro Ribeiro af9d7727ad
Remove warning about destroying install 2019-01-22 11:59:57 +07:00
Pedro Ribeiro 70b9110840
Update nuuo_cms_fu.md 2019-01-21 18:13:23 +07:00
Pedro Ribeiro b7ffab554f
Update nuuo_cms_bruteforce.md 2019-01-21 18:12:34 +07:00
Pedro Ribeiro 156e7c4659
Update nuuo_cms_sqli.md 2019-01-21 18:11:51 +07:00
Pedro Ribeiro 8ed831470c
Create nuuo_cms_file_download.md 2019-01-21 18:10:45 +07:00
Pedro Ribeiro 090387f7cd
Correct mistkae 2019-01-21 18:04:56 +07:00
Pedro Ribeiro 4657d28f1e
Update nuuo_cms_bruteforce.md 2019-01-21 18:04:17 +07:00
Pedro Ribeiro e4b4d9496e
Update nuuo_cms_bruteforce.md 2019-01-21 18:01:46 +07:00
Pedro Ribeiro 71e2873cbf
Create nuuo_cms_sqli.md 2019-01-21 18:00:21 +07:00
Pedro Ribeiro 39cf3e671b
Add docs to bruteforce module 2019-01-21 17:54:22 +07:00
Pedro Ribeiro 66dd2d5b8b
Update nuuo_cms_fu.md 2019-01-21 17:41:07 +07:00
Pedro Ribeiro 272121911d
Add doc file for fu exploit 2019-01-21 17:39:47 +07:00
h00die 2585e4b708 horde imp h3 imap_open 2019-01-18 19:38:30 -05:00
Carter Brainerd 334abebcb1
Implement docs review changes 2019-01-17 20:00:23 -05:00
Brent Cook 1947bae45b
Land #11230, add JuicyPotato local privilege escalation 2019-01-15 21:20:25 -06:00
Brent Cook 4f7bdc7da1 add module docs 2019-01-15 21:17:05 -06:00
Luis Rosa c8a75763b5 detail vulnerable application description 2019-01-16 01:40:36 +00:00
Luis Rosa ffe5db4010 new pcom client mode that allows to read and write
several types of operands
2019-01-16 00:16:38 +00:00
h00die a73fe9433b
land #11169 blueman priv esc on linux 2019-01-15 10:32:46 -05:00
Jacob Robles 04363b7b7e
Doc update
post:chrome_cookies
2019-01-15 07:19:46 -06:00
bcoles 4dc3562046
Update installation notes 2019-01-15 10:41:03 +11:00
Carter Brainerd d323958ebe
Add docs 2019-01-14 14:56:42 -05:00
Alex bd94675b33 Update documentation for post/multi/gather/chrome_cookies 2019-01-13 14:31:07 +11:00
Brendan Coles fe1f654659 Add documentation 2019-01-12 09:15:36 +00:00
Jacob Robles 2f939481e7
Land #11206, add coldfusion ckeditor file upload 2019-01-10 07:27:38 -06:00
Jacob Robles 8ebbd9eeea
Remove extra new lines 2019-01-10 06:44:22 -06:00
Jacob Robles 33b8735d1c
Add doc coldfusion_ckeditor_file_upload 2019-01-10 06:40:38 -06:00
Charlie van Rantwijk 97dbade2e6 typo fixes in cisco_firepower_useradd.md 2019-01-10 10:47:53 +01:00
Luis Rosa 4bfb90ce06 new PCOM module to send admin commands 2019-01-09 20:27:15 +00:00
William Vu 913c80c352
Land #11106, Allen-Bradley legacy protocol DoS 2019-01-09 12:12:02 -06:00
rsp3ar 24de5d6ee3 Update to use CmdStager 2019-01-08 20:07:35 -08:00
Jacob Robles 16b8cf7059
Land #11148, Adding Module MailCleaner RCE 2019-01-08 14:10:31 -06:00
Jacob Robles 5f8d8c3637
Update doc 2019-01-08 13:25:13 -06:00
Jacob Robles c2da3dbbd3
Land #11052, Add gather chrome cookies post module 2019-01-08 07:32:16 -06:00
Jacob Robles 8ca8206303
Update docs 2019-01-08 07:15:50 -06:00
rsp3ar bab651e94d Add Imperva SecureSphere module 2019-01-07 22:18:04 -08:00
William Vu f96514528b
Land #10648, auth bypass for couchdb_enum 2019-01-07 12:53:11 -06:00
William Vu 3a726554e9 Fix review comments 2019-01-07 12:51:52 -06:00
Alex 811605a9b8 Cleanup headless Chrome process for meterpreter sessions 2018-12-30 18:05:41 +11:00
Shelby Pace 29e7c49332
Land #10444, add Consul rexec RCE module 2018-12-28 09:14:28 -06:00
Shelby Pace b1ad271cb8
fixed link 2018-12-28 09:12:31 -06:00
Shelby Pace fb8f06b2f5
Land #10443, add Consul service RCE module 2018-12-28 08:33:56 -06:00
Quentin Kaiser 53a3caba2b List the vulnerable application and versions affected + cleaner cleanup script. 2018-12-24 13:54:02 +01:00
Quentin Kaiser b9d4a46972 And the output that corresponds to the new script. 2018-12-24 13:42:25 +01:00
Quentin Kaiser 46ee2a6c94 Add vulnerable version information + new reference regarding this exact vulnerability. 2018-12-24 13:40:12 +01:00
Brendan Coles fc691af5b1 \n 2018-12-24 08:08:16 +00:00
Brendan Coles 98dc59728e Add blueman set_dhcp_handler D-Bus Privilege Escalation 2018-12-24 08:03:55 +00:00
Garvit Dewan b7dce68fc4
Add documentation for psreadline_history module 2018-12-23 05:18:24 +05:30
@shellfail e6b2b6cee5
Update documentation/modules/exploit/linux/http/mailcleaner_exec.md
Co-Authored-By: mmetince <mmetince@users.noreply.github.com>
2018-12-22 23:16:51 +03:00
@shellfail 9a43507416
Update documentation/modules/exploit/linux/http/mailcleaner_exec.md
Co-Authored-By: mmetince <mmetince@users.noreply.github.com>
2018-12-22 23:16:43 +03:00
Brent Cook b9742802aa
Land #11137, Clean up linux/local/vmware_alsa_config exploit module 2018-12-21 17:04:11 -06:00
Quentin Kaiser 594103e7c3 Update documentation to set up testing environment with Docker. 2018-12-20 13:52:06 +01:00
Mehmet İnce 9481ad04f2 Adding support for ARCH_CMD and updating docs 2018-12-20 12:12:01 +03:00
asoto-r7 d601837e03
Land #10401, java_jmx_server scanner for Java JMX MBean servers 2018-12-19 13:12:03 -06:00
asoto-r7 b52a4f91ac
java_jmx_scanner: Final draft of documentation 2018-12-19 13:10:21 -06:00
Mehmet İnce e5c8c18ded Adding Mailcleaner exec 2018-12-19 17:35:40 +03:00
Jacob Robles 6921b79890
Land #11089, Erlang cookie rce exploit module 2018-12-19 08:02:40 -06:00
Jacob Robles 5bfdc7009c
Minor Doc Changes 2018-12-19 07:58:32 -06:00
Milton-Valencia bb758f9a61 I didn't forget msftidy I swear 2018-12-18 14:55:12 -06:00
Milton-Valencia 8a2a605a99 added targets 2018-12-18 14:50:57 -06:00
jdiog0 b2b410cbbe DoS Exploitation of Allen-Bradley legacy protocol (PCCC) 2018-12-18 16:49:53 +00:00
Quentin Kaiser 0acdcd98f2 Merge branch 'master' into consul_service_exec 2018-12-18 16:27:08 +01:00
Quentin Kaiser 08541cd7b9 Merge branch 'master' into consul_exec 2018-12-18 16:07:08 +01:00
Shelby Pace 2fc501d260
Land #11112, Fix bpf_priv_esc exploit module 2018-12-17 10:00:50 -06:00
Jacob Robles 7839add2fd
Land #11123, Add module windows persistent service 2018-12-17 09:07:21 -06:00
Jacob Robles 80e70b29ef
Doc Formatting 2018-12-17 07:34:52 -06:00
Andres Rodriguez b9cccc2e8f Improvements on code quality and documentation 2018-12-17 00:15:48 -08:00
Brendan Coles d973a58052 Clean up linux/local/vmware_alsa_config 2018-12-17 08:01:34 +00:00
Andres Rodriguez 4660f83768 Fix a typo in the documentation 2018-12-16 23:51:20 -08:00
Andres Rodriguez f05ea634a3 Improvements on code quality and documentation 2018-12-16 23:42:59 -08:00
Andres Rodriguez 48df4be54e Improvements on code quality and documentation 2018-12-16 12:47:52 -08:00
Andres Rodriguez 1ecc5461bf Metasploit module for CVE 2017-3248, Weblogic serialization RCE RMI UnicastRef 2018-12-16 06:21:09 -08:00
Andres Rodriguez 8ce7643e41 Some improvements in code and documentation. 2018-12-15 21:07:53 -08:00
Andres Rodriguez 873d048b89 Some improvements in code and documentation. 2018-12-15 20:42:17 -08:00
Brendan Coles 3d3cf83d4c
Update documentation/modules/exploit/multi/misc/weblogic_deserialize_rawobject.md
Co-Authored-By: acamro <acamro@users.noreply.github.com>
2018-12-15 23:23:39 -05:00
Andres Rodriguez a936d3f78f Metasploit module for CVE 2016-3510, Weblogic serialization RCE Marshalled Object 2018-12-15 19:12:33 -08:00
Andres Rodriguez 446144ba8e Metasploit module for CVE 2015-4852, Weblogic serialization RCE Raw Object 2018-12-15 18:26:34 -08:00
Brendan Coles cba195b7d8 Update tested versions 2018-12-15 05:44:32 +00:00
Brendan Coles a7b5737980 Update documentation 2018-12-15 05:41:40 +00:00
Brendan Coles 1cf5c79cc8 Update documentation 2018-12-14 11:00:18 +00:00
Brendan Coles e4fc4e654d Move documentation to correct directory 2018-12-14 10:56:23 +00:00
Brent Cook 673cfe6889
Land #11119, Add WEBUI_PORT to hp_van_sdn_cmd_inject exploit 2018-12-13 16:15:53 -06:00
Wei Chen cc7cb7302e
Land #10944, Add macOS Safari exploit from pwn2own2018 2018-12-13 13:50:19 -06:00
William Vu cb5648a1c7 Add WEBUI_PORT to hp_van_sdn_cmd_inject exploit 2018-12-13 12:22:36 -06:00
Milton-Valencia 2e26ceac8f added comments 2018-12-13 10:55:09 -06:00
Wei Chen 8ffd9e47b0 Up to date PR10429 2018-12-12 13:30:58 -06:00
Wei Chen 96c281daef Add send_not_found and module documentation for webdav_delivery 2018-12-12 13:26:46 -06:00
Jacob Robles ea724dec46
Merge in upstream/master 2018-12-12 11:00:31 -06:00
Jacob Robles 3fbfaf2ff5
Documentation Update 2018-12-12 07:00:37 -06:00
Shelby Pace ae089ce573
Land #10960, add wp duplicator code inject module 2018-12-11 12:02:07 -06:00
Shelby Pace b82e3469a2
renamed module and doc 2018-12-11 11:59:19 -06:00
Jacob Robles 1ab69c221c
Land #11040, Add CyberLink LabelPrint Local BOF 2018-12-11 08:19:51 -06:00
Jacob Robles 106d6cefe4
Add documentation 2018-12-11 07:55:52 -06:00
Imran E. Dawoodjee 9cc5569ca2
Cleaned up module per @bcoles's recommendations. 2018-12-11 02:56:56 +08:00
William Vu 3f18ffa224
Land #10318, Oracle function-based index privesc 2018-12-10 11:32:39 -06:00
William Vu d0f1f72426 Clean up module 2018-12-10 11:21:16 -06:00
Imran E. Dawoodjee bbd0c8be32
Greatly improved check and tidied up documentation. 2018-12-10 21:02:51 +08:00
Auxilus bca4ae03ff
Replace WsfDelay with WfsDelay 2018-12-10 16:02:19 +05:30
Milton-Valencia f6bfbddb8d twks 2018-12-09 15:59:58 -06:00
Milton-Valencia 15aaaa4f21 removed 0 just saw... 2018-12-09 15:39:27 -06:00
Milton-Valencia 2beddf1012 req changes 2018-12-09 15:01:09 -06:00
Imran E. Dawoodjee 91d0c8f283
Removed offending code, added warning for users,
and updated documentation.
2018-12-10 01:57:44 +08:00
Brendan Coles 340a547d62 Add documentation 2018-12-09 16:34:32 +00:00
Alex c5015c62b8 Simplify Chrome Gather Cookies
Module now uses Chrome itself as a websocket client, reading websockets
via js. It no longer downloads and executes `websocat`.
2018-12-09 09:52:45 +11:00
Imran E. Dawoodjee fdb0a80442
Improved version check, made requests more organic,
and improved made PowerShell work on version 6.0.2.
2018-12-08 19:48:26 +08:00
Imran E. Dawoodjee 2918acc0d2
Added links to functionality and cleaned up `check`
to make it much cleaner per @bcoles's recommendations.
2018-12-08 03:17:52 +08:00
Imran E. Dawoodjee 92c56472ba
Improved module and added documentation. 2018-12-07 03:02:37 +08:00
Julien Legras 2735c71bda Fixed typos, removed not working cleaning 2018-12-04 18:42:54 +01:00
Brent Cook 55a9a12670
Land #10964, add initial golang modules for enumerating owa/o365 2018-12-04 10:33:37 -06:00
Christopher Lee 3d8ec178da Remove unecessary run comment 2018-12-04 09:50:01 -06:00
Christopher Lee 60aba5ac44 Remove defunct comment 2018-12-04 09:41:39 -06:00
asoto-r7 c27c149a4d
Land #10947, HPE Intelligent Management Center Java Deserialization RCE 2018-12-03 17:07:31 -06:00
Brent Cook ffb57387b4
Land #11049, Add Emacs movemail local exploit 2018-12-03 12:43:56 -06:00
bwatters-r7 df9c3da47e
Land #10842, Add Windows Post Module to roll back Windows Defender signatures
Merge branch 'land-10842' into upstream-master
2018-12-03 10:57:38 -06:00
Christopher Lee b11bcd92a4 Broken into 3 modules, addressed review comments 2018-12-03 10:25:21 -06:00
Jeffrey Martin ab1bea1b22
Land #10798, Cisco device manager update 2018-12-03 01:39:19 -06:00
Alex f8389d9eb2 Update documentation for post/chrome/gather/cookies 2018-12-03 16:13:47 +11:00
Alex d0aca05c69 Add post/chrome/gather/cookies module 2018-12-03 16:07:50 +11:00
William Vu ab8df35645 Add module doc 2018-12-01 12:05:08 -06:00
bwatters-r7 70031b6721
Shut up msftidy and document updates 2018-11-30 16:41:40 -06:00
bwatters-r7 3c992b7af1
Updated documentation and added options in the module to update or roll back
definitions
2018-11-30 16:25:33 -06:00
bwatters-r7 a41b9a77d8 Change the module name, fix cleanup, add documentation 2018-11-30 15:20:34 -06:00
Christopher Lee 5b926bcbcf Addressed feedback 2018-11-30 13:18:02 -06:00
Christopher Lee 6225c04b99 Address review feedback, fix bugs 2018-11-30 11:36:39 -06:00