Skip to content
KitploitKITPLOIT
도구블로그
제출
도구블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
watchTowr-vs-Fortiweb-AuthBypass — Python 기반 FortiWeb 인증 우회(CVE-2025-xxxxx) 탐지기. 악용 증거로 테스트 사용자를 생성하기 위해 익스플로잇 페이로드를 전송합니다. | Kitploit
도구/GitHubGitHub/watchtowrlabs/watchtowr-vs-fortiweb-authbypass
Vulnerability AnalysisExploitationWeb Application ExploitationWAF BypassPenetration Testing
GitHubwatchtowrlabs/watchtowr-vs-fortiweb-authbypass

watchTowr-vs-Fortiweb-AuthBypass

Python 기반 FortiWeb 인증 우회(CVE-2025-xxxxx) 탐지기. 악용 증거로 테스트 사용자를 생성하기 위해 익스플로잇 페이로드를 전송합니다.

저장소 보기

인기

모두 보기 →

커뮤니티에서 가장 많이 사용되는 도구를 찾아보세요.

모든 도구 탐색

도구 컬렉션을 둘러보세요

모든 도구 보기 →
공유
76139개월 전Kitploit 검토 완료

watchTowr-vs-Fortiweb-AuthBypass

FortiWeb 인증 우회 탐지 아티팩트 생성기

기술적 세부사항은 블로그 게시물을 참조하세요

동작 데모

root@kitploit:~
python watchTowr-vs-Fortiweb-AuthBypass.py 192.168.1.99
                         __         ___  ___________
         __  _  ______ _/  |__ ____ |  |_\__    ____\____  _  ________
         \ \/ \/ \__  \    ___/ ___\|  |  \|    | /  _ \ \/ \/ \_  __ \
          \     / / __ \|  | \  \___|   Y  |    |(  <_> \     / |  | \/
           \/\_/ (____  |__|  \___  |___|__|__  | \__  / \/\_/  |__|
                                  \/          \/     \/

        watchTowr-vs-Fortiweb-AuthBypass.py

        (*) FortiWeb Authentication Bypass Artifact Generator

          - Sina Kheirkhah (@SinSinology) and Jake Knott (@inkmoro) of watchTowr (@watchTowrcyber)

        CVEs: [CVE-2025-xxxxx]

[+] Exploit sent successfully.
[*] Check for the new user [ 35f36895 ] with password [ 35f36895 ]


설명

이 스크립트는 FortiWeb이 인증 우회에 취약한지 탐지하려고 시도합니다.

영향을 받는 버전

8.0.2 미만의 FortiWeb 버전이 영향을 받습니다. 보다 구체적인 버전에 대해서는 FortiGuard Labs PSIRT에 문의하십시오.

watchTowr Labs 팔로우하기

최신 보안 연구를 보려면 watchTowr Labs 팀을 팔로우하세요.

  • https://labs.watchtowr.com/
  • https://x.com/watchtowrcyber
도구 다운로드