metasploit-framework/modules/exploits/linux
Jack Heysel 2b90d33aef
Land #18618, Add OpenNMS privesc and auth RCE
This module exploits built-in functionality in OpenNMS Horizon in order
to execute arbitrary commands as the opennms user. For versions 32.0.2
and higher, this module requires valid credentials for a user with
ROLE_FILESYSTEM_EDITOR privileges and either ROLE_ADMIN or ROLE_REST.
For versions 32.0.1 and lower, credentials are required for a user with
ROLE_FILESYSTEM_EDITOR, ROLE_REST, and/or ROLE_ADMIN privileges.
2024-03-20 12:54:16 -07:00
..
antivirus Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
browser Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
fileformat Clean up and better documentation 2022-08-22 11:46:50 -07:00
ftp re-adding first check, but not including [^ ] 2021-03-17 06:51:08 +07:00
games Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
http Land #18618, Add OpenNMS privesc and auth RCE 2024-03-20 12:54:16 -07:00
ids Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
imap Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
local Land #18838, Improve Runc Priv Esc Check 2024-03-18 13:31:09 -07:00
misc remove redundant \d in check regex 2023-11-07 09:21:04 +00:00
mysql Update broken secunia references 2023-03-23 10:43:57 +00:00
pop3 Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
postgres Align SQL sessions peerhost and peerport 2024-03-04 13:11:32 +00:00
pptp Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
proxy Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
redis Run rubocop on exploit modules 2023-02-08 15:20:32 +00:00
samba Replace deprecated File.exists? with File.exist? 2023-03-05 14:30:47 +11:00
smtp restore raw_send_recv for module using SMTP mixin 2023-01-04 14:45:58 -06:00
snmp Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
ssh set all targets to dynamically build list 2023-10-23 06:54:38 -04:00
telnet Convert disclosure dates to iso8601 2020-10-02 21:00:37 +01:00
upnp Update deprecation date and message 2023-12-05 10:51:12 +01:00