Update nuuo_cms_fu.md

GSoC/Meterpreter_Web_Console
Pedro Ribeiro 2019-01-21 18:13:23 +07:00 committed by GitHub
parent 66dd2d5b8b
commit 70b9110840
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 8 additions and 8 deletions

View File

@ -17,14 +17,14 @@ This vulnerability is exploitable in CMS versions up to and including v2.4.
This module will either use a provided session number (which can be guessed with an auxiliary module) or attempt to login using a provided username and password - it will also try the default credentials if nothing is provided.
# The following versions were tested:
# - 1.5.2 OK
# - 2.1.0 OK
# - 2.3.2 OK
# - 2.4.0 OK
# - 2.6.0 FAIL (vuln fixed?)
# - 2.9.0 FAIL
# - 2.10.0 FAIL
## The following versions were tested:
- 1.5.2 OK
- 2.1.0 OK
- 2.3.2 OK
- 2.4.0 OK
- 2.6.0 FAIL (vuln fixed?)
- 2.9.0 FAIL
- 2.10.0 FAIL
## References
https://ics-cert.us-cert.gov/advisories/ICSA-18-284-02