Wh04m1001 / CVE-2023-20178

90 stars 17 forks source link

Race Condition Failed #5

Open joshuanutt opened 1 year ago

joshuanutt commented 1 year ago

image

Exploit runs but gets "Race Condition Failed" and no System Console pops up.

Cisco AnyConnect Secure Mobility Client Version 4.10.05111

Windows 10 Enterprise 19044.2965

To replicate: Launch the exploit Log into Cisco VPN Do multi-factor Exploit fails like the above screenshot

ThisGuyNeedsABeer commented 1 year ago

Same here

image

Cisco SecureClient 5.0.01242

Windows 10 Professional 22H2 (19045.2965)

Replication:

Edit: Reboot, and re-ran, seems to be working, somewhat reliably. Commenting out the Fail() function contents also seemed to improve reliability, though I'm not entirely sure why that would be.

Nagomez97 commented 1 year ago

Same here. Rebooting is not enough.

image

Windows 11 22H2 Cisco AnyConnect 4.10.06079

image