
Script de détection pour CVE-2021-42278 et CVE-2021-42287
Script de détection pour CVE-2021-42278 et CVE-2021-42287
The detection script uses the domain account credentials to determine the possibility of the vulnerabilities.
usage: noPac-detection.py [-h] [-debug] -dc-ip <IP address> -targetUser <Target Username> credentials
optional arguments:
-h, --help show this help message and exit
-debug Turn DEBUG output ON
mandatory:
-dc-ip <IP address> IP of the domain controller to use. Useful if you can't translate the FQDN.specified in the
account parameter will be used
-targetUser <Target Username>
The target user to retrieve the PAC of
credentials domain/username[:password]. Valid domain credentials to use for grabbing targetUser's PAC
Remarque : Toutes les valeurs obligatoires sont nécessaires au fonctionnement du script, le mode debug est pris en charge, le TargetUser peut être n'importe quel compte utilisateur connecté au domaine, définissez toujours le domaine comme domain.local Par exemple : megacorp.local, cars.local, etc.,
$ python noPac-detection.py MARVEL.local/pparker:P#%DG323c89 -targetUser fcastle -dc-ip 192.168.10.13
