
Ivanti EPM SQL-Injection-Schwachstelle für Remote Code Execution
Proof-of-Concept-Exploit zur blinden Ausführung von Befehlen auf verwundbaren Ivanti-EPM-Geräten.
Deep Dive und Indicators of Compromise hier: https://www.horizon3.ai/attack-research/attack-blogs/cve-2024-29824-deep-dive-ivanti-epm-sql-injection-remote-code-execution-vulnerability
% python CVE-2024-29824.py -h
usage: CVE-2024-29824.py [-h] -u URL -c CMD_FILE
options:
-h, --help show this help message and exit
-u URL, --url URL The base URL of the target
-c CMD_FILE, --cmd_file CMD_FILE
The commands to execute blind
Diese Software wurde ausschließlich zu Zwecken der akademischen Forschung und zur Entwicklung effektiver Verteidigungstechniken erstellt und ist nicht dazu bestimmt, Systeme anzugreifen, außer wenn dies ausdrücklich autorisiert wurde. Die Projektbetreuer sind nicht verantwortlich oder haftbar für den Missbrauch der Software. Nutzen Sie sie verantwortungsbewusst.