
CVE-2020-3452 का दुरुपयोग करते हुए CISCO ASA उपकरणों की वेब निर्देशिका में सुलभ मानक फ़ाइलों की गणना करने के लिए बुनियादी स्कैनर।
बस एक बुनियादी एक्सप्लॉइट जो CVE-2020-3452 का दुरुपयोग करके CISCO ASA/FTD उपकरणों के वेब निर्देशिका में सुलभ मानक फ़ाइलों को सूचीबद्ध करता है।
डिफ़ॉल्ट रूप से यह Metasploit Framework में CVE-2018-0296 के नमूना आउटपुट से बनाई गई फ़ाइल सूची का उपयोग करता है (https://github.com/rapid7/metasploit-framework/blob/master/documentation/modules/auxiliary/scanner/http/cisco_directory_traversal.md)।
Usage: cve-2020-3452.sh <target ip/hostname>
Example: cve-2020-3452.sh mytarget.com
Files that are downloaded will be in the newly created 'cisco_asa_files' directory