Nmap Development mailing list archives

IPMI scripts (ipmi-version.nse and ipmi-cipher-zero.nse)


From: Claudiu Perta <claudiu.perta () gmail com>
Date: Fri, 18 Jul 2014 20:50:12 +0100

Hi devs,

As a follow-up to the last meeting with my mentor, I've been working on
porting some of the IPMI modules[1] from Metasploit to nmap. So far, I
implemented the protocol (ipmi.lua) and two scripts 'ipmi-version.nse', and
'ipmi-cipher-zero.nse': the first one does basic IPMI host information
discovery, while the second identifies the cipher-zero vulnerability in
IPMI 2.0 compatible systems.

I tested both scripts on OpenIPMI simulator (v1.0.13) and they seem to work
fine.

Cheers,
Claudiu

[1]
https://secwiki.org/w/Nmap/Script_Ideas#ipmi-version.2C_ipmi-cipher-zero.2C_ipmi-dump-hashes.2C_ipmi-user-brute_etc
.

Attachment: ipmi-version.nse
Description:

Attachment: ipmi-cipher-zero.nse
Description:

Attachment: ipmi.lua
Description:

_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/

Current thread: