Skip to content

crazywifi/HPE-Intelligent-Management-Center-dbman-Command-10001-Information-Disclosure

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

9 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

HPE Intelligent Management Center dbman Command 10001 Information Disclosure

Tested on Version: iMC_PLAT_7.1_E0302_Standard_Windows and iMC_PLAT_7.2_E0403_Std_Win

Tested on: Windows 7

CVE : CVE-2019-5392

Conversion of Nessus Plugin to Python Exploit

Nessus Plugin Name: hp_imc_dbman_cmd_10001_info_disclosure.nasl

Description: This vulnerability allow remote attacker to view the contents of arbitrary directories under the security context of the SYSTEM or root user.

In this exploit I converted the Nessus Plugin to Python by using Exploit https://www.exploit-db.com/exploits/43198

POC of iMC_PLAT_7.1_E0302_Standard_Windows

Alt text Alt text

POC of iMC_PLAT_7.2_E0403_Std_Win

Alt text Alt text

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages