Author Topic: Plesk 9.5.4 0-day  (Read 1125 times)

0 Members and 1 Guest are viewing this topic.

Offline Alin

  • Peasant
  • *
  • Posts: 56
  • Cookies: -4
    • View Profile
Plesk 9.5.4 0-day
« on: June 06, 2013, 11:46:58 am »
Just wanted to share what my inbox came across this morning

http://packetstormsecurity.com/files/download/121915/pleskwwwzeroday.rar

Kingcope 0-day for Plesk 9.5.4 - anyone tried it yet?

Offline Alin

  • Peasant
  • *
  • Posts: 56
  • Cookies: -4
    • View Profile
Re: Plesk 9.5.4 0-day
« Reply #1 on: June 06, 2013, 01:27:49 pm »
Just for the record, I can confirm that this is legit.

Took me some time to find a vulnerable server. If you want to give it a go 85.214.146.170 is vulnerable and you can find more using pnscan:

Code: [Select]
pnscan -w "GET /phppath/php HTTP/1.0\r\n\r\n" -r "500 Internal" <iprange>/<subnet> 80
Notice that not all of the results are positives.

Offline Stackprotector

  • Administrator
  • Titan
  • *
  • Posts: 2515
  • Cookies: 205
    • View Profile
Re: Plesk 9.5.4 0-day
« Reply #2 on: June 06, 2013, 01:36:03 pm »
http://www.exploit-db.com/exploits/25986/
^ It is verified on exploit-db
~Factionwars