
bash script for automated discovery and exploitation of machines with the CVE-2022-39986 vulnerability
RaspAP Hunter is a Bash script designed to scan for RaspAP installations and test them for a specific vulnerability CVE-2022-39986.
____ ___ ____
/ __ \ ____ _ _____ ____ / | / __ \
/ /_/ // __ `// ___// __ \ / /| | / /_/ /
/ _, _// /_/ /(__ )/ /_/ // ___ | / ____/
/_/ |_| \__,_//____// .___//_/ |_|/_/
__ __ /_/ __ author: mind2hex
/ / / /__ __ ____ / /_ ___ _____
/ /_/ // / / // __ \ / __// _ \ / ___/
/ __ // /_/ // / / // /_ / __// /
/_/ /_/ \__,_//_/ /_/ \__/ \___//_/
c=====e
____________ _,,_H__
(__((__((___() CVE-2022-39986 //| |
(__((__((___()()_____________________________________// |ACME |
(__((__((___()()()------------------------------------/ |_____|
Clone this repository or download the script raspap_hunter.sh.
Make the script executable:
chmod +x raspap_hunter.sh
Run the script:
./raspap_hunter.sh
php-reverse-shell.php is available in the working directory or it will be downloaded from the provided URL.mind2hex
This script is for educational and research purposes only. Do not use this against any systems without explicit permission.
Please see the license file in the repository.