Files
metasploit-gs/modules/exploits/linux/http
Jack Heysel d7f3fd8cc0 Land #18915, Add Watchguard RCE CVE-2022-26318
This PR adds a module for a buffer overflow at the administration
interface of WatchGuard Firebox and XTM appliances. The appliances are
built from a cherrypy python backend sending XML-RPC requests to a C
binary called wgagent using pre-authentication endpoint /agent/login.
This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before
12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2. Successful
exploitation results in remote code execution as user nobody.
2024-03-28 10:24:32 -07:00
..
2023-08-28 17:39:02 -04:00
2021-04-30 23:29:24 -05:00
2023-01-25 13:45:18 -05:00
2021-08-10 15:40:23 +01:00
2023-08-08 17:15:22 -04:00
2023-02-08 15:46:07 +00:00
2023-04-04 10:24:09 +01:00
2023-09-06 15:47:54 -04:00
2023-02-08 15:46:07 +00:00
2023-08-08 17:16:57 -04:00
2024-03-20 11:39:19 -07:00
2023-02-08 15:46:07 +00:00
2022-10-03 19:50:04 -04:00
2023-02-15 16:29:42 -05:00
2023-06-13 17:05:30 -05:00
2022-04-14 17:25:48 +02:00
2023-09-12 12:21:10 -04:00
2019-04-01 17:21:23 -05:00
2022-05-13 15:32:12 -05:00