hak5 / pineapple-modules

The Official WiFi Pineapple Module Repository for the WiFi Pineapple Mark VII
https://wifipineapple.com
368 stars 157 forks source link

Command injection in nmap web gui #75

Closed ultimateshadsform closed 5 months ago

ultimateshadsform commented 5 months ago

image

It's probably designed to work like this but still.

dallaswinger commented 5 months ago

Nmap commands in some cases can take advantage of nested bash so this might also be considered a feature by the module author.

However, as far as potential security concerns go, due to authentication being required to access this module I wouldn't categorize this as an issue. Once authenticated to the web UI there is a root web shell built in and accessible - this does not provide anything beyond that.

Feel free to provide additional info if I am missing some part of the picture.

ultimateshadsform commented 5 months ago

Yeah that's probably why