
Apache RocketMQ 远程代码执行漏洞(CVE-2023-33246) Exploit
Apache RocketMQ Remote Code Execution Vulnerability (CVE-2023-33246) Exploit
java -jar CVE-2023-33246.jar -ip "127.0.0.1:10911" -cmd "open -a Calculator"
Since the heartbeat mechanism triggers the vulnerability every 30 seconds, the tool introduces a 35-second delay to ensure the command is executed, and then restores the configuration file. Therefore, when this tool exploits the vulnerability, it does not affect the environment! (Provided you wait for the tool to finish naturally, rather than force-closing it!)
This detection tool is intended solely for authorized security testing by security professionals from various security companies. Do not use it to infiltrate or attack any external computer systems without permission. It must not be used for any form of unauthorized security testing. This tool is provided for technical exchange only, and no liability is assumed for any theoretical or actual losses caused by its use.