securifera / CVE-2019-1579

63 stars 27 forks source link

PoC usage #2

Open omarix opened 5 years ago

omarix commented 5 years ago

Hi, Thank you for your PoC, I'm working on a pan-os 1.8.0 , and I need to adjust the PoC Addresses, and i'm confused about the execution order of the scripts dump_memory.py, poc_leak.py and resolve_symbol_table.py in order to identify the addresses strlen_GOT and system_PLT

Your quick help to explain the usage those scripts will be very appreciated

Regards.

kamalmez94 commented 3 months ago

Hi,

Can you please let us know what is the sequence or execution order of the scripts dump_memory.py, poc_leak.py and resolve_symbol_table.py in order to identify the addresses strlen_GOT and system_PLT?

Also, for the scripts, in the usage example, we do see -m SSH_IP. From where will we get the SSH_IP as I currently only have the Global Protect IP with me?

Your guidance or help to answer the above queries for the scripts usage will be very appreciated

Regards.