Skip to content

Commit f3d644c

Browse files
committed
Use real SiteReference instances
This fixes an issue in how the vulnerabilities are reported
1 parent 992b01b commit f3d644c

File tree

1 file changed

+7
-11
lines changed

1 file changed

+7
-11
lines changed

modules/auxiliary/gather/ldap_esc_vulnerable_cert_finder.rb

Lines changed: 7 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -14,12 +14,12 @@ class MetasploitModule < Msf::Auxiliary
1414
ADS_GROUP_TYPE_UNIVERSAL_GROUP = 0x00000008
1515

1616
REFERENCES = {
17-
'ESC1' => [ 'https://posts.specterops.io/certified-pre-owned-d95910965cd2' ],
18-
'ESC2' => [ 'https://posts.specterops.io/certified-pre-owned-d95910965cd2' ],
19-
'ESC3' => [ 'https://posts.specterops.io/certified-pre-owned-d95910965cd2' ],
20-
'ESC4' => [ 'https://posts.specterops.io/certified-pre-owned-d95910965cd2' ],
21-
'ESC13' => [ 'https://posts.specterops.io/adcs-esc13-abuse-technique-fda4272fbd53' ],
22-
'ESC15' => [ 'https://trustedsec.com/blog/ekuwu-not-just-another-ad-cs-esc' ]
17+
'ESC1' => [ SiteReference.new('URL', 'https://posts.specterops.io/certified-pre-owned-d95910965cd2') ],
18+
'ESC2' => [ SiteReference.new('URL', 'https://posts.specterops.io/certified-pre-owned-d95910965cd2') ],
19+
'ESC3' => [ SiteReference.new('URL', 'https://posts.specterops.io/certified-pre-owned-d95910965cd2') ],
20+
'ESC4' => [ SiteReference.new('URL', 'https://posts.specterops.io/certified-pre-owned-d95910965cd2') ],
21+
'ESC13' => [ SiteReference.new('URL', 'https://posts.specterops.io/adcs-esc13-abuse-technique-fda4272fbd53') ],
22+
'ESC15' => [ SiteReference.new('URL', 'https://trustedsec.com/blog/ekuwu-not-just-another-ad-cs-esc') ]
2323
}.freeze
2424

2525
SID = Struct.new(:value, :name) do
@@ -63,11 +63,7 @@ def initialize(info = {})
6363
'Spencer McIntyre', # ESC13 and ESC15 updates
6464
'jheysel-r7' # ESC4 update
6565
],
66-
'References' => [
67-
[ 'URL', 'https://posts.specterops.io/certified-pre-owned-d95910965cd2' ],
68-
[ 'URL', 'https://posts.specterops.io/adcs-esc13-abuse-technique-fda4272fbd53' ], # ESC13
69-
[ 'URL', 'https://trustedsec.com/blog/ekuwu-not-just-another-ad-cs-esc' ] # ESC15
70-
],
66+
'References' => REFERENCES.values.flatten.map { |r| [ r.ctx_id, r.ctx_val ] }.uniq,
7167
'DisclosureDate' => '2021-06-17',
7268
'License' => MSF_LICENSE,
7369
'DefaultOptions' => {

0 commit comments

Comments
 (0)