CVE-2019-0708 vulnerability reproducibility

Some questions reproduction process to reproduce:

  • [-] 10.211.55.8:3389 - Exploit failed: NameError undefined local variable or method `rdp_connect' for #<Msf::Modules::Exploit__Windows__Rdp__Cve_2019_0708_bluekeep_rce::MetasploitModule:0x00007f9c251837b0>

  Error appears above what you need to replace the four files ( https://github.com/rapid7/metasploit-framework/pull/12283/files?file-filters%5B%5D=.rb )

  • rdp.rb -> /opt/metasploit-framework/embedded/framework/lib/msf/core/exploit/rdp.rb

    rdp_scanner.rb -> /opt/metasploit-framework/embedded/framework/modules/auxiliary/scanner/rdp/rdp_scanner.rb

    cve_2019_0708_bluekeep.rb -> /opt/metasploit-framework/embedded/framework/modules/auxiliary/scanner/rdp/cve_2019_0708_bluekeep.rb

    cve_2019_0708_bluekeep_rce.rb -> /opt/metasploit-framework/embedded/framework/modules/exploits/windows/rdp/cve_2019_0708_bluekeep_rce.rb

  • News ForceExploit Error: ForceExploit needs to be set to true;
  • Beat blue screen it has been unable to rebound shell: be sure that you are not sp1 version of (I measured a no sp, has been playing a blue screen) into sp1 successful. Of course, you can test more than a few times Ha;
  • It is said that the problem of blue screen play, can also be solved by increasing the configuration, I used the default Parallels Desktop is a core-G, but I did not change the results, we can try to change the message if successful, a Bo Ha;
  • Choosing the right target, can be viewed by show targets, if you are installing vmware you choose your corresponding Ha, I was directly choose Parallels Desktop 1

 

Show Options:

Run:

 

 

 

 

 

Guess you like

Origin www.cnblogs.com/nul1/p/11482119.html