
CVE-2000-0649 के लिए PoC बनाने का एक छोटा सा टूल।
CVE-2000-0649 के लिए PoC बनाने का एक छोटा उपकरण।
यह स्क्रिप्ट जाँचती है कि सर्वर CVE-2000-0649 के लिए भेद्य (vulnerable) है या नहीं। ध्यान रखें कि HTTP, HTTPS और विभिन्न पथों के साथ प्रयोग किया जाए। मेरे अनुभव में, प्रकटीकरण ज़्यादातर HTTP पर कनेक्ट करते समय और डिफ़ॉल्ट पथ '/' या '/images' का उपयोग करने पर होता है।
आपको होस्ट/IP पता और एक पोर्ट प्रदान करना होगा। डिफ़ॉल्ट रूप से पथ '/' पर सेट होता है। वैकल्पिक रूप से, आप '/' से शुरू होने वाला एक पथ निर्दिष्ट कर सकते हैं।
$ python3 cve-2000-0649.py -host {hostname} -port {port} -path {path}
This script verifies if the server is vulnerable for CVE-2000-0649.
Keep in mind to play with HTTP, HTTPS and different paths. In my experience the disclosure is mostly happening when connecting over HTTP and using the default path '/' or '/images'
Server response:
HTTP/1.1 301 Moved Permanently
Content-Type: text/html; charset=UTF-8
Location: https://192.168.1.1/images/
Server: Microsoft-IIS/10.0
X-Powered-By: ASP.NET
Date: Tue, 18 Jun 2024 13:26:25 GMT
Connection: close
Content-Length: 152
<head><title>Document Moved</title></head>
<body><h1>Object Moved</h1>This document may be found <a HREF="https://192.168.1.1/images/">here</a></body>
The server may be vulnerable to CVE-2000-0649.
The response contains an internal IP address, indicating a potential information disclosure.
बेझिझक issues खोलें, योगदान करें और अपने Pull Requests सबमिट करें। आप मुझे Twitter (@PvdH) पर भी संपर्क कर सकते हैं।