Files
metasploit-gs/modules/exploits/linux/http
Jack Heysel 2b90d33aef Land #18618, Add OpenNMS privesc and auth RCE
This module exploits built-in functionality in OpenNMS Horizon in order
to execute arbitrary commands as the opennms user. For versions 32.0.2
and higher, this module requires valid credentials for a user with
ROLE_FILESYSTEM_EDITOR privileges and either ROLE_ADMIN or ROLE_REST.
For versions 32.0.1 and lower, credentials are required for a user with
ROLE_FILESYSTEM_EDITOR, ROLE_REST, and/or ROLE_ADMIN privileges.
2024-03-20 12:54:16 -07:00
..
2023-08-28 17:39:02 -04:00
2021-04-30 23:29:24 -05:00
2023-01-25 13:45:18 -05:00
2021-08-10 15:40:23 +01:00
2023-08-08 17:15:22 -04:00
2023-02-08 15:46:07 +00:00
2023-04-04 10:24:09 +01:00
2023-09-06 15:47:54 -04:00
2023-02-08 15:46:07 +00:00
2023-08-08 17:16:57 -04:00
2024-03-20 11:39:19 -07:00
2023-02-08 15:46:07 +00:00
2022-10-03 19:50:04 -04:00
2023-02-15 16:29:42 -05:00
2023-06-13 17:05:30 -05:00
2022-04-14 17:25:48 +02:00
2023-09-12 12:21:10 -04:00
2019-04-01 17:21:23 -05:00
2022-05-13 15:32:12 -05:00