
CMS Made Simple < 2.2.10 - SQL Injection (für Python3 umgeschrieben), CVE-2019-905
CMS Made Simple < 2.2.10 - SQL Injection (für python3 umgeschrieben), CVE-2019-9053
Ich fand es problematisch, diesen Exploit auf Kali Linux auszuführen, da Python2 kein termcolor hat, also habe ich ihn mit nur wenigen Änderungen für Python3 zum Laufen gebracht. Alle Anerkennung geht an: https://www.exploit-db.com/exploits/46635
Ich habe es gegen eine verwundbare CMS-Maschine auf https://tryhackme.com getestet. Es funktioniert wie vorgesehen.
┌──(xtafnull㉿kali)-[/opt]
└─$ python3 46635.py
[+] Specify an url target
[+] Example usage (no cracking password): exploit.py -u http://target-uri
[+] Example usage (with cracking password): exploit.py -u http://target-uri --crack -w /path-wordlist
[+] Setup the variable TIME with an appropriate time, because this sql injection is a time based.