/cve-2022-23131

Primary LanguagePythonApache License 2.0Apache-2.0

cve-2022-23131

FOFA

app="ZABBIX-监控系统" && body="saml"

运行

python cve-2022-23131.py https://www.example.com Admin

利用exp生成signed_session,替换cookie,再点击 Sign in with Single Sign-On (SAML) 默认是Admin

(尊重尺度,后果自负)

萍水相逢,致敬不甘平凡的平凡人