此 Python 脚本利用了 reNgine 2.2.0 中的一个经过身份验证的命令注入漏洞。该漏洞针对扫描引擎配置中的 nmap_cmd 参数,允许攻击者执行任意命令。
requests 库。克隆仓库:
git clone https://github.com/example/rengine-exploit.git
cd rengine-exploit
pip install requests
运行脚本:
python poc.py --url http://rengine.target.com --username admin --password securepassword123 --engine-id 2