CoCalc Logo Icon
StoreFeaturesDocsShareSupportNewsAboutSign UpSign In
rapid7

Real-time collaboration for Jupyter Notebooks, Linux Terminals, LaTeX, VS Code, R IDE, and more,
all in one place.

GitHub Repository: rapid7/metasploit-framework
Path: blob/master/documentation/modules/auxiliary/dos/http/tautulli_shutdown_exec.md
Views: 11789

Vulnerable Application

Tautulli versions 2.1.9 and prior are vulnerable to denial of service via the /shutdown URL in applications that do not have a user login area enabled.

Scenario

72550314-80cd8a00-38a3-11ea-9bad-942668a29390

Verification Steps :

List the steps needed to make sure this thing works

  1. Start msfconsole

  2. use auxiliary/dos/http/tautulli_shutdown_exec

  3. set RHOSTS XXX.XXX.XXX.XXX

  4. run