针对 Ivanti EPM CVE-2024-13159 及其他漏洞的概念验证(PoC)利用程序,可允许未经认证地强制获取 Ivanti EPM 机器凭据,并用于中继攻击。
% python3 CVE-2024-13159.py -h
usage: CVE-2024-13159.py [-h] -u URL -t TARGET
options:
-h, --help show this help message and exit
-u URL, --url URL The base URL of the target
-t TARGET, --target TARGET
The target IP to reach out to
本软件纯粹出于学术研究和开发有效防御技术的目的而创建,除非获得明确授权,否则不应用于攻击系统。项目维护者不对软件的滥用负责或承担任何责任。请负责任地使用。