Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
CVE-2020-9289 — Decrypt reversible secrets encrypted using the default hardcoded key related to CVE-2020-9289 on FortiAnalyzer/FortiManager (the only difference with CVE-2019-6693 is the encryption routine). | Kitploit
工具/GitHubGitHub/synacktiv/cve-2020-9289
Encryption/Decryption ToolsVulnerability AnalysisExploitationConfiguration AuditingCryptographyPenetration Testing
GitHubsynacktiv/cve-2020-9289

CVE-2020-9289

Decrypt reversible secrets encrypted using the default hardcoded key related to CVE-2020-9289 on FortiAnalyzer/FortiManager (the only difference with CVE-2019-6693 is the encryption routine).

查看仓库
1133年前尚未审核

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

解密 FortiManager 配置密钥 (CVE-2020-9289)

CVE-2020-9289 和 CVE-2019-6693 与相同的默认硬编码密钥相关。

在 FortiManager/FortiAnalyzer 中实现的解密例程的唯一区别是:

  • IV 处理(所有 16 个字节在数字加密数据之前提供)。
  • 最后一个加密块从输出中剥离,因此需要附加垃圾数据,然后从明文中移除。

详情请参见 https://www.fortiguard.com/psirt/FG-IR-19-007。

下载工具