distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks.
No PoCs from references.
- https://github.com/0xwh1pl4sh/distccd_rce_CVE-2004-2687
- https://github.com/20142995/nuclei-templates
- https://github.com/4n0nym0u5dk/distccd_rce_CVE-2004-2687
- https://github.com/ARPSyndicate/cvemon
- https://github.com/CVEDB/PoC-List
- https://github.com/CVEDB/awesome-cve-repo
- https://github.com/CYB3RLEO/Penenetration_Testing_Lab_Exploitation_Phase4-Metasploitable2-distcc-
- https://github.com/CYB3RLEO/Penetration_Test_Report_Metasploitable2
- https://github.com/H3xL00m/distccd_rce_CVE-2004-2687
- https://github.com/KirthiNadesn/Penetration_Testing_Metasploitable2
- https://github.com/Kr1tz3x3/HTB-Writeups
- https://github.com/Lunartyx/Metasploit-Framework
- https://github.com/N3rdyN3xus/distccd_rce_CVE-2004-2687
- https://github.com/Nellyjay74/Running-Vulnerability-Assessment-Report
- https://github.com/NyxByt3/distccd_rce_CVE-2004-2687
- https://github.com/OTLAW1899/Vulnerability-Assessment-Scan-Report--On--Kali-Server-Using-Nmap
- https://github.com/Patrick122333/4240project
- https://github.com/RanDomGuY84/OIBSIP
- https://github.com/SanjuCyb3r/Metasploitable-2
- https://github.com/SecGen/SecGen
- https://github.com/Sp3c73rSh4d0w/distccd_rce_CVE-2004-2687
- https://github.com/aaronamran/Vulnerability-Scanning-Lab-with-OpenVAS-and-Metasploitable2
- https://github.com/angelpimentell/distcc_cve_2004-2687_exploit
- https://github.com/c0d3cr4f73r/distccd_rce_CVE-2004-2687
- https://github.com/crypticdante/distccd_rce_CVE-2004-2687
- https://github.com/cyb3rs3cres3arch/SecGen
- https://github.com/durjoy-10/CYBER_NOTE
- https://github.com/giusepperuggiero96/Network-Security-2021
- https://github.com/gregtampa/HBCTF-Battlegrounds
- https://github.com/gwyomarch/Lame-HTB-Writeup-FR
- https://github.com/h3x0v3rl0rd/distccd_rce_CVE-2004-2687
- https://github.com/h3xcr4ck3r/distccd_rce_CVE-2004-2687
- https://github.com/hussien-almalki/Hack_lame
- https://github.com/k4miyo/CVE-2004-2687
- https://github.com/k4u5h41/distccd_rce_CVE-2004-2687
- https://github.com/marcocastro100/Intrusion_Detection_System-Python
- https://github.com/mrhunter7/SecGen
- https://github.com/n0-traces/cve_monitor
- https://github.com/n3ov4n1sh/distccd_rce_CVE-2004-2687
- https://github.com/n3rdh4x0r/distccd_rce_CVE-2004-2687
- https://github.com/roshan11420/Ethical-hacking-project
- https://github.com/shadow-here/Ethical-Hacking-Project
- https://github.com/ss0wl/CVE-2004-2687_distcc_v1
- https://github.com/sukraken/distcc_exploit.py