How to detect and exploit MS Exchange Zero-Day Vulnerability
by - Thursday, January 1, 1970 at 12:00 AM
Detect with OSINT tool 
And carry out Server-Side Forgery attacks and inflict damage on the exchange server with Remote Code Execution 
Large majority exposed on port 80 and 443 

Hidden Content
You must register or login to view this content.
Hidden Content
You must register or login to view this content.
Hidden Content
You must register or login to view this content.
Hidden Content
You must register or login to view this content.
Hidden Content
You must register or login to view this content.
Reply
thanks for your afford
Reply
very good sharing thanks
Reply
If u want to scan some OWA domain or host with OWA, can do with NSA script http-vuln-exchange (download and copy nsa file(s) to dir /usr/share/nmap/scripts) and nmap

Example
When we find some mail server with OWA we can make scanning for vuln with this command.
sudo nmap --script http-vuln-exchange mail.example.com
If this server it's vuln u will see message "MS Exchange 2016 IS VULNERABILITY".
Reply


 Users viewing this thread: How to detect and exploit MS Exchange Zero-Day Vulnerability: No users currently viewing.