Skip to content

Commit 39cc743

Browse files
committed
automatic module_metadata_base.json update
1 parent e0ccd8a commit 39cc743

File tree

1 file changed

+51
-0
lines changed

1 file changed

+51
-0
lines changed

db/modules_metadata_base.json

Lines changed: 51 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -25065,6 +25065,57 @@
2506525065

2506625066
]
2506725067
},
25068+
"auxiliary_gather/progress_moveit_sftp_fileread_cve_2024_5806": {
25069+
"name": "Progress MOVEit SFTP Authentication Bypass for Arbitrary File Read",
25070+
"fullname": "auxiliary/gather/progress_moveit_sftp_fileread_cve_2024_5806",
25071+
"aliases": [
25072+
25073+
],
25074+
"rank": 300,
25075+
"disclosure_date": "2024-06-25",
25076+
"type": "auxiliary",
25077+
"author": [
25078+
"sfewer-r7"
25079+
],
25080+
"description": "This module exploits CVE-2024-5806, an authentication bypass vulnerability in the MOVEit Transfer SFTP service. The\n following version are affected:\n\n * MOVEit Transfer 2023.0.x (Fixed in 2023.0.11)\n * MOVEit Transfer 2023.1.x (Fixed in 2023.1.6)\n * MOVEit Transfer 2024.0.x (Fixed in 2024.0.2)\n\n The module can establish an authenticated SFTP session for a MOVEit Transfer user. The module allows for both listing\n the contents of a directory, and the reading of an arbitrary file.",
25081+
"references": [
25082+
"CVE-2024-5806",
25083+
"URL-https://attackerkb.com/topics/44EZLG2xgL/cve-2024-5806/rapid7-analysis"
25084+
],
25085+
"platform": "",
25086+
"arch": "",
25087+
"rport": 22,
25088+
"autofilter_ports": [
25089+
25090+
],
25091+
"autofilter_services": [
25092+
25093+
],
25094+
"targets": null,
25095+
"mod_time": "2024-07-03 17:12:03 +0000",
25096+
"path": "/modules/auxiliary/gather/progress_moveit_sftp_fileread_cve_2024_5806.rb",
25097+
"is_install_path": true,
25098+
"ref_name": "gather/progress_moveit_sftp_fileread_cve_2024_5806",
25099+
"check": true,
25100+
"post_auth": true,
25101+
"default_credential": false,
25102+
"notes": {
25103+
"Stability": [
25104+
"crash-safe"
25105+
],
25106+
"SideEffects": [
25107+
"ioc-in-logs"
25108+
],
25109+
"Reliability": [
25110+
25111+
]
25112+
},
25113+
"session_types": false,
25114+
"needs_cleanup": false,
25115+
"actions": [
25116+
25117+
]
25118+
},
2506825119
"auxiliary_gather/prometheus_api_gather": {
2506925120
"name": "Prometheus API Information Gather",
2507025121
"fullname": "auxiliary/gather/prometheus_api_gather",

0 commit comments

Comments
 (0)