PRP: hashicorp nomad exposed UI RCE#694
Conversation
|
Hi @am0o0 , just a reminder that this is waiting on the testbed ( google/security-testbeds#158 (comment) ) |
|
Hi @am0o0 , I'm running into trouble confirming the vulnerability with the provided detector. The curl command that you included in the README for the testbed seems to work, but the templated detector gives this error in the server (with no callback triggered): |
|
@robert-doyensec Hi |
…xposedUI.textproto Co-authored-by: Robert Dick <robert@doyensec.com>
…xposedUI.textproto Co-authored-by: Robert Dick <robert@doyensec.com>
…xposedUI.textproto Co-authored-by: Robert Dick <robert@doyensec.com>
|
LGTM - Approved Reviewer: Robert, Doyensec |
Testbed:
google/security-testbeds#158
PRP issue:
#687