Centreon Poller Authenticated Remote Command Execution
Posted by deepcore on March 19, 2020 – 11:38 am
This Metasploit module exploits a flaw where an authenticated user with sufficient administrative rights to manage pollers can use this functionality to execute arbitrary commands remotely. Usually, the miscellaneous commands are used by the additional modules (to perform certain actions), by the scheduler for data processing, etc. This module uses this functionality to obtain a remote shell on the target.
Post a reply
You must be logged in to post a comment.