Path: blob/master/documentation/modules/auxiliary/scanner/ivanti/ivanti_login.md
27907 views
Description
The module performs bruteforce attack against Ivanti Connect Secure. It allows to attack both regular user and admin as well - you can select which type of account to attack with ADMIN parameter.
Vulnerable Application
Verification Steps
use auxiliary/scanner/ivanti/ivanti_loginset RHOSTS [IP]either
set USERNAME [username]orset USERPASS_FILE [usernames file]either
set PASSWORD [password]orset PASS_FILE [passwords file]set ADMIN [attack admin?]run