
向日葵 RCE
Nothing much to say, I'll just put the tool and the vulnerable version here. It's great for local testing, but do not use it for illegal tests.
Tested Sunflower client vulnerable version: 11.0.0.33162
The vulnerable client is provided in the source code.
Port scanning uses: https://github.com/jboursiquot/portscan
11.1.1
10.3.0.27372
11.0.0.33162
-h Specify target
-t Select scan or command execution, default scan
-p Set scan port range, default 40000 to 65535
-c Command to execute
scan
rce

20220216