rapid7/metasploit-framework

View on GitHub
modules/exploits/unix/misc/zabbix_agent_exec.rb

Summary

Maintainability
A
2 hrs
Test Coverage

Method initialize has 40 lines of code (exceeds 25 allowed). Consider refactoring.
Open

  def initialize(info = {})
    super(update_info(info,
      'Name'           => 'Zabbix Agent net.tcp.listen Command Injection',
      'Description'    => %q{
          This module exploits a metacharacter injection vulnerability
Severity: Minor
Found in modules/exploits/unix/misc/zabbix_agent_exec.rb - About 1 hr to fix

    Method exploit has 27 lines of code (exceeds 25 allowed). Consider refactoring.
    Open

      def exploit
        connect
    
        rnd_port = rand(1024) + 1
        buf = "net.tcp.listen[#{rnd_port}';#{payload.encoded};']\n"
    Severity: Minor
    Found in modules/exploits/unix/misc/zabbix_agent_exec.rb - About 1 hr to fix

      There are no issues that match your filters.

      Category
      Status