
CVE-2026-24061 - GNU InetUtils telnetd Authentifizierungs-Bypass POC + Docker-Lab-Umgebung zum Testen
⚠️ WARNUNG: Absichtlich verwundbare Umgebung. Nicht ungeschützten Netzwerken aussetzen.
Verwundbarer GNU InetUtils telnetd (v2.5) zum Testen von CVE-2026-24061 – Authentifizierungsumgehung durch Argument-Injection.
# Build
sudo docker compose up -d
# Test connection
telnet 127.0.0.1
#exploitation
python3 exploit.py 127.0.0.1
| Benutzer | Passwort |
|---|---|
| testuser | password |
| root | toor |
| Feld | Wert |
|---|---|
| CVE | CVE-2026-24061 |
| Betroffen | GNU InetUtils telnetd ≤ 2.7 |
| Typ | Authentifizierungsumgehung (CWE-88) |
| Auswirkung | Remote-Root-Zugriff |
|> Quelle : https://www.safebreach.com/blog/safebreach-labs-root-cause-analysis-and-poc-exploit-for-cve-2026-24061/