TheNaterz
|
f19ed4376b
|
Adding new version offsets
|
2016-09-23 12:57:36 -06:00 |
TheNaterz
|
98cf5d8eb5
|
Changed 'build_offsets' to 'build_payload'
|
2016-09-23 09:32:17 -06:00 |
zerosum0x0
|
1868371ba7
|
fix merge conflicts
|
2016-09-23 14:49:36 +00:00 |
zerosum0x0
|
2591d0b7c6
|
numerous fixes as per @busterb
|
2016-09-23 14:46:40 +00:00 |
TheNaterz
|
dda6b67928
|
Added basic error handling for unsupported ASA versions
|
2016-09-22 18:24:25 -06:00 |
TheNaterz
|
cf070853e9
|
Moved required datastore option into constructor
|
2016-09-22 18:08:35 -06:00 |
TheNaterz
|
df25f07b34
|
Replaced '+=' with '<<'
|
2016-09-22 17:53:28 -06:00 |
TheNaterz
|
f525c24a9f
|
Added offsets for 8.4(7)
|
2016-09-22 17:16:37 -06:00 |
zerosum0x0
|
28a09c2d13
|
stupid comment
|
2016-09-22 22:57:42 +00:00 |
TheNaterz
|
7762f42dfa
|
Added offsets for 8.3(1)
|
2016-09-22 16:17:37 -06:00 |
TheNaterz
|
064aed858b
|
Added RiskSense contributor repo to references
|
2016-09-22 16:10:30 -06:00 |
TheNaterz
|
961524d648
|
Adding offsets for 9.1(1)4
|
2016-09-22 16:04:44 -06:00 |
TheNaterz
|
4e9459d876
|
Added offsets for 9.0(1)
|
2016-09-22 15:35:59 -06:00 |
TheNaterz
|
5ca6563c8f
|
Fixed problem with 9.2(2)8 offsets
|
2016-09-22 15:24:49 -06:00 |
TheNaterz
|
b77adc97f0
|
Removing redundant version check
|
2016-09-22 15:05:42 -06:00 |
TheNaterz
|
c22a2a19e8
|
Added offsets for 9.2(2)8
|
2016-09-22 14:59:49 -06:00 |
TheNaterz
|
e8d1f6d5a0
|
Added offsets for 8.2(3)
|
2016-09-22 14:38:52 -06:00 |
Jenna Magius
|
a0ba8b7401
|
Fix whitespace per msftidy
|
2016-09-22 14:25:04 -06:00 |
TheNaterz
|
022189c075
|
Added offsets for 8.4(3)
|
2016-09-22 14:12:33 -06:00 |
zerosum0x0
|
4288c3fb46
|
added always_return_true variable
|
2016-09-22 19:44:55 +00:00 |
TheNaterz
|
c18045128a
|
Replaced global vars, made 'patched_code' value static
|
2016-09-22 13:42:23 -06:00 |
zerosum0x0
|
3c7fc49788
|
Added module auxiliary/admin/cisco/cisco_asa_extrabacon
This module patches the authentication functions of a Cisco ASA
to allow uncredentialed logins. Uses improved shellcode for payload.
|
2016-09-22 18:06:03 +00:00 |
wchen-r7
|
bc425b0378
|
Update samsung_security_manager_put
This patch improves the following
* Stage 1 XSS/JS attack to use the body.onload callback
* Better timing for FF
|
2016-09-22 12:02:49 -05:00 |
Brent Cook
|
9f3c8c7eee
|
Land #7268, add metasploit_webui_console_command_execution post-auth exploit
|
2016-09-22 00:50:58 -05:00 |
Brent Cook
|
88cef32ea4
|
Land #7339, SSH module fixes from net:ssh updates
|
2016-09-22 00:27:32 -05:00 |
Brendan
|
04f8f7a0ea
|
Land #7266, Add Kaltura Remote PHP Code Execution
|
2016-09-21 17:14:49 -05:00 |
Kyle Gray
|
9d01f24cff
|
Land #7388, relocate Rex::Platform:Windows content
This PR consolidates the few lines of consts/code in lib/rex/platforms/windows.rb into MSF core.
Completes #MS-1714
|
2016-09-20 16:39:07 -05:00 |
Louis Sato
|
8b1d29feef
|
Land #7304, fix rails_secret_deserialization popchain
|
2016-09-20 16:05:03 -05:00 |
Mehmet Ince
|
2d3c167b78
|
Grammar changes again.
|
2016-09-20 23:51:12 +03:00 |
Mehmet Ince
|
0f16393220
|
Yet another grammar changes
|
2016-09-20 19:48:40 +03:00 |
Mehmet Ince
|
fb00d1c556
|
Another minor grammer changes
|
2016-09-20 19:23:28 +03:00 |
Brendan
|
251421e4a7
|
Minor grammar changes
|
2016-09-20 10:37:39 -05:00 |
Mehmet Ince
|
385428684f
|
Move module and docs under the exploit/linux/http folder
|
2016-09-20 12:45:23 +03:00 |
Brent Cook
|
a9a1146155
|
fix more ssh option hashes
|
2016-09-20 01:30:35 -05:00 |
Mehmet Ince
|
c689a8fb61
|
Removing empty lines before module start
|
2016-09-20 01:42:18 +03:00 |
Mehmet Ince
|
29a14f0147
|
Change References to EDB number and remove 4 space
|
2016-09-20 01:31:56 +03:00 |
David Maloney
|
e315ec4e73
|
Merge branch 'master' into bug/7321/fix-ssh-modules
|
2016-09-19 15:27:37 -05:00 |
David Maloney
|
06ff7303a6
|
make pubkey verifier work with old module
make the new pubkey verifier class and
the old identify_pubkeys aux module work
together
7321
|
2016-09-19 15:20:35 -05:00 |
Pearce Barry
|
3f5ed75198
|
Relocate Rex::Platform:Windows content (fixes MS-1714)
|
2016-09-19 14:34:44 -05:00 |
h00die
|
3bc566a50c
|
fix email
|
2016-09-18 20:09:38 -04:00 |
Mehmet Ince
|
53d4162e7d
|
Send payload with POST rather than custom header.
|
2016-09-17 23:11:16 +03:00 |
Thao Doan
|
d2100bfc4e
|
Land #7301, Support URIHOST for exim4_dovecot_exec for NAT
|
2016-09-16 12:49:57 -07:00 |
Thao Doan
|
7c396dbf59
|
Use URIHOST
|
2016-09-16 12:48:54 -07:00 |
William Vu
|
4d0643f4d1
|
Add missing DefaultTarget to Docker exploit
|
2016-09-16 13:09:00 -05:00 |
William Vu
|
da516cb939
|
Land #7027, Docker privesc exploit
|
2016-09-16 12:44:21 -05:00 |
William Vu
|
4ba1ed2e00
|
Fix formatting in fortinet_backdoor
Also add :config and :use_agent options.
|
2016-09-16 12:32:30 -05:00 |
William Vu
|
e3060194c6
|
Fix formatting in ubiquiti_airos_file_upload
Also add :config and :use_agent options.
|
2016-09-16 12:27:09 -05:00 |
David Maloney
|
26491eed1a
|
pass the public key in as a file instead of data
when using key_data it seems to assume it is a private
key now. the initial key parsing error can be bypassed
by doing this
7321
|
2016-09-16 11:48:51 -05:00 |
Brent Cook
|
90f0eec390
|
Land #7325, Fix missing form inputs in skybluecanvas_exec
|
2016-09-15 19:55:32 -05:00 |
William Vu
|
a7103f2155
|
Fix missing form inputs
Also improve check string.
|
2016-09-15 19:19:24 -05:00 |