From df992bf94b6cf08797264290e4e12e4525daf294 Mon Sep 17 00:00:00 2001 From: William Vu Date: Wed, 8 Apr 2020 00:24:35 -0500 Subject: [PATCH] Note compromised user less specifically This is just what was configured in the Docker container. --- .../exploit/linux/http/nexus_repo_manager_el_injection.md | 2 +- modules/exploits/linux/http/nexus_repo_manager_el_injection.rb | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/documentation/modules/exploit/linux/http/nexus_repo_manager_el_injection.md b/documentation/modules/exploit/linux/http/nexus_repo_manager_el_injection.md index 9aee577167..981a3d3f6e 100644 --- a/documentation/modules/exploit/linux/http/nexus_repo_manager_el_injection.md +++ b/documentation/modules/exploit/linux/http/nexus_repo_manager_el_injection.md @@ -4,7 +4,7 @@ This module exploits a Java Expression Language (EL) injection in Nexus Repository Manager versions up to and including 3.21.1 to execute code -as the "nexus" user. +as the Nexus user. ### Setup diff --git a/modules/exploits/linux/http/nexus_repo_manager_el_injection.rb b/modules/exploits/linux/http/nexus_repo_manager_el_injection.rb index 129b0d2cc3..29903597a8 100644 --- a/modules/exploits/linux/http/nexus_repo_manager_el_injection.rb +++ b/modules/exploits/linux/http/nexus_repo_manager_el_injection.rb @@ -17,7 +17,7 @@ class MetasploitModule < Msf::Exploit::Remote 'Description' => %q{ This module exploits a Java Expression Language (EL) injection in Nexus Repository Manager versions up to and including 3.21.1 to execute code - as the "nexus" user. + as the Nexus user. }, 'Author' => [ 'Alvaro Muñoz', # Discovery