We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 08de13f commit 16fefd9Copy full SHA for 16fefd9
modules/exploits/multi/http/magento_xxe_cve_2024_34102.rb
@@ -158,6 +158,10 @@ def xxe_request
158
end
159
160
def exploit
161
+ if datastore['SSL']
162
+ ssl_restore = true
163
+ datastore['SSL'] = false
164
+ end
165
start_service({
166
'Uri' => {
167
'Proc' => proc do |cli, req|
@@ -166,6 +170,7 @@ def exploit
170
'Path' => '/'
171
}
168
172
})
173
+ datastore['SSL'] = true if ssl_restore
169
174
xxe_request
175
rescue Timeout::Error => e
176
fail_with(Failure::TimeoutExpired, e.message)
0 commit comments