We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent d625ab5 commit d79810aCopy full SHA for d79810a
modules/exploits/multi/http/wingftp_null_byte_rce.rb
@@ -133,7 +133,7 @@ def exploit
133
)
134
fail_with(Failure::UnexpectedReply, 'Injection failed') unless res&.code == 200
135
136
- uid = res.get_cookies.to_s[/UID=[^;]+/]
+ uid = res.get_cookies_parsed.fetch('UID', nil)
137
fail_with(Failure::UnexpectedReply, 'UID cookie not returned') unless uid
138
print_good("Received UID: #{uid}, injection succeeded")
139
0 commit comments