
CVE-2021-42278 및 CVE-2021-42287 탐지 스크립트
CVE-2021-42278 및 CVE-2021-42287 탐지 스크립트
The detection script uses the domain account credentials to determine the possibility of the vulnerabilities.
usage: noPac-detection.py [-h] [-debug] -dc-ip <IP address> -targetUser <Target Username> credentials
optional arguments:
-h, --help show this help message and exit
-debug Turn DEBUG output ON
mandatory:
-dc-ip <IP address> IP of the domain controller to use. Useful if you can't translate the FQDN.specified in the
account parameter will be used
-targetUser <Target Username>
The target user to retrieve the PAC of
credentials domain/username[:password]. Valid domain credentials to use for grabbing targetUser's PAC
참고: 모든 필수 값은 스크립트 작동에 필요합니다. 디버그 모드를 지원합니다. TargetUser는 도메인에 연결된 모든 사용자 계정이 될 수 있습니다. 항상 도메인을 domain.local로 설정하세요. 예: megacorp.local, cars.local 등.
$ python noPac-detection.py MARVEL.local/pparker:P#%DG323c89 -targetUser fcastle -dc-ip 192.168.10.13
