[CVE-2024-23113] FortiOS, FortiPAM, FortiProxy and FortiWeb (POC)
by Aanya - Thursday October 31, 2024 at 04:47 AM
#11
(Nov 03, 2024, 01:48 PM)Aanya Wrote: Well its hard  Cry Cry  even after bypassing forti source , we dint have a memory location to write to  , after finding that , send a shell code , rewrite it with return address .  or there is some other way that i am not aware of  , we certainly need help from someone who has  bigger brains .

The person who writes the RCE for this they'll have my full respect .  Heart Heart

seems you're so close to get RCE, I hope you do that.
Is there any chance to share that if you got working payload?
Reply
#12
(Nov 03, 2024, 05:36 PM)jump Wrote:
(Nov 03, 2024, 01:48 PM)Aanya Wrote: Well its hard  Cry Cry  even after bypassing forti source , we dint have a memory location to write to  , after finding that , send a shell code , rewrite it with return address .  or there is some other way that i am not aware of  , we certainly need help from someone who has  bigger brains .

The person who writes the RCE for this they'll have my full respect .  Heart Heart

seems you're so close to get RCE, I hope you do that.
Is there any chance to share that if you got working payload?

Any updates here?
ZeroNet
Contact me on Tox for faster replies
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  New Zer0 Day Wordpress A3g00n 83 3,992 Yesterday, 08:17 PM
Last Post: j4ng0
  {SECRET} DATABASE OF EXPLOITS lulagain 441 28,067 Yesterday, 05:41 PM
Last Post: chiki
  Google Dorks for finding SQL injection vulnerabilities and other security issues 1yush 69 3,664 Yesterday, 03:55 PM
Last Post: fkmonkey
  CVE-2024-32002 RCE PoC HA_twck 2 561 Yesterday, 01:33 PM
Last Post: newxiao1
  Cisco Secure Firewall Management Center(CVE-2026-20131) DirtyEra 0 133 Yesterday, 01:40 AM
Last Post: DirtyEra

Forum Jump:


 Users browsing this forum: 1 Guest(s)