GhostSecCanada

THE STATE DUMA RUSSIAN HACKS WORKING

Nov 4th, 2020
419
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
JSON 1.77 KB | None | 0 0
  1. 95.173.130.2
  2.  
  3. www.duma.gov.ru
  4.  
  5. SHITTY WEB TECH
  6. nginx/1.5.7
  7.  
  8. WORKING EXPLOITS
  9.  
  10. Vulnerable software
  11.  
  12. nginx
  13.  
  14. Server applications / Web servers
  15.  
  16. Vendor  NGINX
  17.  
  18. Out-of-bounds read
  19. Description
  20. The vulnerability allows a remote attacker to gain access to potentially sensitive information.
  21. The vulnerability exists due to a boundary condition when processing rewrite rules with a '\0' character in ngx_http_core_module.c. An attacker with ability to influence a rewrite rule can view memory contents via Location HTTP header.
  22. Successful exploitation of vulnerability requires that an attacker can influence rewrite engine, as demonstrated with OpenResty issue.
  23.  
  24. Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
  25. Description
  26. The vulnerability allows a remote attacker to perform HTTP request smuggling attacks.
  27. The vulnerability exists with certain error_page configurations. A remote attacker can read unauthorized web pages in environments where NGINX is being fronted by a load balancer.
  28.  
  29. Command Injection
  30. Description
  31. The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
  32.  
  33. The STARTTLS implementation in mail/ngx_mail_smtp_handler.c in the SMTP proxy in nginx 1.5.x and 1.6.x before 1.6.1 and 1.7.x before 1.7.4 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack.
  34.  
  35. EFFECTED WEBSITES
  36. api.duma.gov.ru  
  37. iam.duma.gov.ru  
  38. pda.duma.gov.ru  
  39. pda.iam.duma.gov.ru  
  40. pda.transcript.duma.gov.ru  
  41. spec.duma.gov.ru  
  42. transcript.duma.gov.ru  
  43. vote.duma.gov.ru  
  44. www.duma.gov.ru  
  45.  
  46. #GhostSec
  47. #EyePhuckBitches
Add Comment
Please, Sign In to add comment