Wocanilo / adaPwn

CVE-2019-14912 PoC

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

adaPwn - CVE-2019-14912 PoC

adAS OPENSSO module doesn't correctly verify the domain to redirect, making possible to redirect the user to an attacker controlled website, stealing his adAS session cookie.

Usage

usage: adaPwn.py [-h] [--interface INTERFACE] [--httpPort HTTPPORT] [--dnsPort DNSPORT] ipToSpoof realIP redirectUrl ipBlacklist [ipBlacklist ...]

About

CVE-2019-14912 PoC


Languages

Language:Python 100.0%