Script ipmi-brute

Script types: portrule
Categories: intrusive, brute
Download: https://svn.nmap.org/nmap/scripts/ipmi-brute.nse

Script Summary

Performs brute force password auditing against IPMI RPC server.

Script Arguments

brute.credfile, brute.delay, brute.emptypass, brute.firstonly, brute.guesses, brute.mode, brute.passonly, brute.retries, brute.start, brute.threads, brute.unique, brute.useraspass

See the documentation for the brute library.

creds.[service], creds.global

See the documentation for the creds library.

passdb, unpwdb.passlimit, unpwdb.timelimit, unpwdb.userlimit, userdb

See the documentation for the unpwdb library.

Example Usage

nmap -sU --script ipmi-brute -p 623 <host>

Script Output

PORT     STATE  SERVICE REASON
623/udp  open|filtered  unknown
| ipmi-brute:
|   Accounts
|_    admin:admin => Valid credentials

Requires


Author:

  • Claudiu Perta

License: Same as Nmap--See https://nmap.org/book/man-legal.html