Exploitation Summary
EIP tracks 2 public exploits for CVE-2020-10915.
PoCs published by Cinnamon1212, Michael Zanetta, Edgar Boda-Majer, wvu, including Metasploit module exploits/windows/misc/veeam_one_agent_deserialization.
AI-analyzed exploit summary This is a Metasploit module exploiting a .NET deserialization vulnerability in Veeam ONE Agent (CVE-2020-10915). It sends a malicious handshake to trigger deserialization of a payload, leading to remote code execution.
Description
This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.4587. Authentication is not required to exploit this vulnerability. The specific flaw exists within the HandshakeResult method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-10401.
Exploits (2)
This is a Metasploit module exploiting a .NET deserialization vulnerability in Veeam ONE Agent (CVE-2020-10915). It sends a malicious handshake to trigger deserialization of a payload, leading to remote code execution.
This Metasploit module exploits a .NET deserialization vulnerability in Veeam ONE Agent by sending a malicious handshake packet with a crafted serialized payload, leading to remote code execution.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H