mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-14 20:08:44 +00:00
1.0 KiB
1.0 KiB
CVE-2017-5230
Description
The Java keystore in all versions and editions of Rapid7 Nexpose prior to 6.4.50 is encrypted with a static password of 'r@p1d7k3y5t0r3' which is not modifiable by the user. The keystore provides storage for saved scan credentials in an otherwise secure location on disk.
POC
Reference
No PoCs from references.
Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Lingom-KSR/Clair-CLI
- https://github.com/arminc/clair-scanner
- https://github.com/jgsqware/clairctl
- https://github.com/joelee2012/claircli
- https://github.com/mightysai1997/clair-scanner
- https://github.com/pruthv1k/clair-scan
- https://github.com/pruthvik9/clair-scan