HP SiteScope SOAP Call...

- AV AC AU C I A
发布: 2024-09-01
修订: 2024-12-11

This Metasploit module exploits an authentication bypass vulnerability in HP SiteScope which allows to retrieve the HP SiteScope configuration, including administrative credentials. It is accomplished by calling the getSiteScopeConfiguration operation available through the APISiteScopeImpl AXIS service. The HP SiteScope Configuration is retrieved as file containing Java serialization data. This Metasploit module has been tested successfully on HP SiteScope 11.20 over Windows 2003 SP2 and Linux Centos 6.3.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息