Sploitus

Exploit for Improper Input Validation in Cisco Adaptive Security Appliance Software

gitee · 2021-01-24

Exploit Code

MARKDOWN2 lines
## https://sploitus.com/exploit?id=4728CA2A-D8BD-541F-B102-631D4006398F
PoC exploit for CVE-2020-3452, an unauthorized remote file reading vulnerability in Cisco Adaptive Security Appliance and FTD Software. The exploit uses Shodan to scan for vulnerable targets, then attempts to exploit the vulnerability by sending crafted HTTP requests to the identified targets. The exploit is implemented in a bash script, SnE-CVE-2020-3452.sh, which is designed to be run on Linux systems. The script uses the Shodan Command-Line Interface to search for vulnerable targets, and then uses curl to send HTTP requests to the identified targets. The script also includes a Twitter handle and a message at the end, suggesting that the author is a security researcher.