Ethical Hacking Automation

Automate Recon and scanning process with Vidoc. All security teams in one place

Cisco System Network Configuration Exposure

By kannthu

Low
Vidoc logoVidoc Module
#exposure#cisco#edb#config
Description

What is the "Cisco System Network Configuration Exposure?"

The "Cisco System Network Configuration Exposure" module is designed to detect misconfigurations in Cisco network devices. It targets the network configuration of Cisco systems and checks for potential vulnerabilities. This module has a low severity level.

Author: DhiyaneshDk

Impact

If a misconfiguration is detected, it could potentially expose sensitive network configuration information, which may lead to unauthorized access or other security risks.

How the module works?

The module sends an HTTP GET request to the path /CGI/Java/Serviceability?adapter=device.statistics.configuration to retrieve the network configuration. It then applies matching conditions to determine if the response contains the phrase "Network Configuration" and if the HTTP status code is 200 (OK).

If both conditions are met, the module reports a vulnerability.

Reference: https://www.exploit-db.com/ghdb/5430

Module preview

Concurrent Requests (1)
1. HTTP Request template
GET/CGI/Java/Serviceabi...
Matching conditions
word: Network Configurationand
status: 200
Passive global matcher
No matching conditions.
On match action
Report vulnerability