diff --git a/modules/exploits/multi/http/sonicwall_scrutinizer_methoddetail_sqli.rb b/modules/exploits/multi/http/sonicwall_scrutinizer_methoddetail_sqli.rb index 123d2b2b02..2a3abeb8af 100644 --- a/modules/exploits/multi/http/sonicwall_scrutinizer_methoddetail_sqli.rb +++ b/modules/exploits/multi/http/sonicwall_scrutinizer_methoddetail_sqli.rb @@ -180,10 +180,10 @@ class MetasploitModule < Msf::Exploit::Remote fail_with(Failure::NoAccess, "Username '#{datastore['USERNAME']}' is incorrect.") elsif res['loginfailed'] fail_with(Failure::NoAccess, "Password '#{datastore['PASSWORD']}' is incorrect.") + elsif res['sessionid'] + report_cred(datastore['USERNAME'], datastore['PASSWORD']) end - report_cred(datastore['USERNAME'], datastore['PASSWORD']) - res end