NetExec Zerologon Check (CVE-2020-1472)

Non-destructive check for the Netlogon CVE-2020-1472 (Zerologon) vulnerability against a domain controller. Does not actually reset the machine account — use the standalone exploit if you intend to.

Tool
nxc
Category
Enumeration / SMB
Platform
linux
Requires
no credentials
Protocols
SMB, RPC

Open in Command Manager

Syntax

Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.

nxc smb <dc-ip> -u '' -p '' -M zerologon

Examples

nxc smb 10.10.10.10 -u '' -p '' -M zerologon

Tags

netexec nxc zerologon cve-2020-1472 vulnerability-check

References