cve_2023_3519_inspector.py 是一款基于 Python 的漏洞扫描器,用于检测 Citrix Gateway 中的 CVE-2023-3519 漏洞。它通过对目标网站进行被动分析和指纹识别,基于一系列检查来评估其漏洞状态。
此脚本需要 Python 3.6+ 及以下 Python 包:
安装所需包,运行:
git clone https://github.com/securekomodo/citrixInspector.git
cd citrixInspector
pip install -r requirements.txt
python cve_2023_3519_inspector.py -u <target_url>
Author: Bryan Smith (@securekomodo)
------------------------
_________ .__ __ .__
\_ ___ \|__|/ |________|__|__ ___
/ \ \/| \ __\_ __ \ \ \/ /
\ \___| || | | | \/ |> <
\______ /__||__| |__| |__/__/\_ \
\/ \/
.___ __
| | ____ ____________ ____ _____/ |_ ___________
| |/ \ / ___/\____ \_/ __ \_/ ___\ __\/ _ \_ __ \
| | | \___ \ | |_> > ___/\ \___| | ( <_> ) | \/
|___|___| /____ >| __/ \___ >\___ >__| \____/|__|
\/ \/ |__| \/ \/
CVE-2023-3519 Inspector
------------------------
usage: cve_2023_3519_inspector.py [-h] (-u URL | -f FILE) [--ioc-check] [-l LOG]
检查 Citrix Gateway 的漏洞。
optional arguments:
-h, --help 显示此帮助信息并退出
-u URL, --url URL 要检查的 Citrix Gateway URL
-f FILE, --file FILE 包含待检查 URL 列表的文件
--ioc-check 速度较慢。执行 IOC(入侵危害指标)检查。
-l LOG, --log LOG 输出日志文件
cve_2023_3519_inspector.py 脚本可以接受单个 URL 或包含 URL 列表的文件作为输入。然后它执行一系列检查,以判断给定 Citrix Gateway 的潜在漏洞:
# 检查单个 URL
python cve_2023_3519_inspector.py --url https://example.com
# 从文件检查多个 URL
python cve_2023_3519_inspector.py --file urls.txt
# 从文件检查多个 URL 并检查 IOC
python cve_2023_3519_inspector.py --file urls.txt --ioc-check
要指定输出日志文件,请使用 --log 选项:
python cve_2023_3519_inspector.py --url https://example.com --log my_log.log
寻求帮助:
python cve_2023_3519_inspector.py --help
cve_2023_3519_inspector.py 脚本对目标网站执行以下检查:
根据通过的检查,脚本推断目标是否为 Citrix Gateway 以及是否易受攻击,并将结果输出到控制台,也可选择输出到日志文件。
欢迎提交拉取请求。对于重大更改,请先开启一个 issue 进行讨论。
本项目仅用于教育和道德测试目的。在未事先获得双方同意的情况下,使用 citrixInspector/cve_2023_3519_inspector 攻击目标是非法的。最终用户有责任遵守所有适用的地方、州和联邦法律。开发者不承担任何责任,也不对因使用本程序造成的任何误用或损害负责。
本项目使用 MIT 许可证。
Bryan Smith