-
Notifications
You must be signed in to change notification settings - Fork 57
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
why the crash poc do not work #1
Comments
I'd double check you're running the public PoC that sends the request twice. The original PoC didn't. |
The poc I use is https://www.exploit-db.com/exploits/43986/, It's that anything wrong? |
You shouldn't need the redirect enabled. The PoC you linked won't work by default. The authors fixed it on pastebin at some point. I don't recall off the top of my head if the 302 response is normal, and don't have time to test atm, but I'd try the other PoC for now. |
Using the modified POC, I can't trigger crash, can you trigger now? |
No :( |
my firmware is asav-941-200.qcow2, the version info are shown below:
of course, the 64 bit catches my eyes! I note this on my config all the time.
I enable the snmp, ikev1, ikev2, webvpn on asa by "Configuring a Cisco ASA test environment from ground zero" and "asadbg/config/", thanks a lot. I verified every service works well.
every thing is OK, I'm ready to use the poc. But, nothing happend. Do not crash. Why???
The text was updated successfully, but these errors were encountered: