{"id":443013,"date":"2024-12-26T04:07:01","date_gmt":"2024-12-26T04:07:01","guid":{"rendered":"http:\/\/savepearlharbor.com\/?p=443013"},"modified":"-0001-11-30T00:00:00","modified_gmt":"2024-12-26T04:07:01","slug":"","status":"publish","type":"post","link":"https:\/\/savepearlharbor.com\/?p=443013","title":{"rendered":"<span>\u0410\u0432\u0442\u043e\u043c\u0430\u0442\u0438\u0447\u0435\u0441\u043a\u0438\u0439 \u043f\u043e\u0438\u0441\u043a Proof-Of-Concept \u0441\u043a\u0440\u0438\u043f\u0442\u043e\u0432 \u0434\u043b\u044f CVE (sploitscan)<\/span>"},"content":{"rendered":"<div><!--[--><!--]--><\/div>\n<div id=\"post-content-body\">\n<div>\n<div class=\"article-formatted-body article-formatted-body article-formatted-body_version-2\">\n<div xmlns=\"http:\/\/www.w3.org\/1999\/xhtml\">\n<h2>\u0412\u0432\u0435\u0434\u0435\u043d\u0438\u0435<\/h2>\n<p>\u0412 <strong>Kali Linux 2024.2 Release<\/strong> \u0434\u043e\u0431\u0430\u0432\u0438\u043b\u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0438\u0439 \u0430\u0432\u0442\u043e\u043c\u0430\u0442\u0438\u0437\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043f\u043e\u0438\u0441\u043a PoC \u0441\u043a\u0440\u0438\u043f\u0442\u043e\u0432 \u0434\u043b\u044f \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 &#8212; <a href=\"https:\/\/github.com\/xaitax\/SploitScan\" rel=\"noopener noreferrer nofollow\"><strong>sploitscan<\/strong><\/a>. \u041d\u0430 \u043c\u043e\u043c\u0435\u043d\u0442 \u043d\u0430\u043f\u0438\u0441\u0430\u043d\u0438\u044f \u0441\u0442\u0430\u0442\u044c\u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0435\u0442 \u0441\u043b\u0435\u0434\u0443\u044e\u0449\u0438\u0435 \u0431\u0430\u0437\u044b \u0434\u0430\u043d\u043d\u044b\u0445 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u043e\u0432:<\/p>\n<ul>\n<li>\n<p><a href=\"https:\/\/poc-in-github.motikan2010.net\/\" rel=\"noopener noreferrer nofollow\"><strong>GitHub<\/strong><\/a><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/www.exploit-db.com\/\" rel=\"noopener noreferrer nofollow\"><strong>ExploitDB<\/strong><\/a><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/vulncheck.com\/\" rel=\"noopener noreferrer nofollow\"><strong>VulnCheck<\/strong><\/a> (\u0442\u0440\u0435\u0431\u0443\u0435\u0442\u0441\u044f API \u043a\u043b\u044e\u0447)<\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/packetstormsecurity.com\/\" rel=\"noopener noreferrer nofollow\"><strong>Packet Storm<\/strong><\/a><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/github.com\/projectdiscovery\/nuclei-templates\" rel=\"noopener noreferrer nofollow\"><strong>Nuclei<\/strong><\/a><\/p>\n<\/li>\n<\/ul>\n<blockquote>\n<p>\u0414\u0430\u043d\u043d\u0430\u044f \u0441\u0442\u0430\u0442\u044c\u044f \u043f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u0430 \u0438\u0441\u043a\u043b\u044e\u0447\u0438\u0442\u0435\u043b\u044c\u043d\u043e \u0432 \u043e\u0431\u0440\u0430\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044c\u043d\u044b\u0445 \u0446\u0435\u043b\u044f\u0445. Red Team \u0441\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e &#171;GISCYBERTEAM&#187; \u043d\u0435 \u043d\u0435\u0441\u0451\u0442 \u043e\u0442\u0432\u0435\u0442\u0441\u0442\u0432\u0435\u043d\u043d\u043e\u0441\u0442\u0438 \u0437\u0430 \u043b\u044e\u0431\u044b\u0435 \u043f\u043e\u0441\u043b\u0435\u0434\u0441\u0442\u0432\u0438\u044f \u0435\u0435 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u044f \u0442\u0440\u0435\u0442\u044c\u0438\u043c\u0438 \u043b\u0438\u0446\u0430\u043c\u0438.<\/p>\n<\/blockquote>\n<h2>\u0423\u0441\u0442\u0430\u043d\u043e\u0432\u043a\u0430<\/h2>\n<p><strong>GitHub<\/strong><\/p>\n<pre><code class=\"bash\">git clone &lt;https:\/\/github.com\/xaitax\/SploitScan.git&gt; cd sploitscan pip install -r requirements.txt<\/code><\/pre>\n<p><strong>pip<\/strong><\/p>\n<pre><code class=\"bash\">pip install --user sploitscan<\/code><\/pre>\n<p><strong>Kali\/Ubuntu\/Debian<\/strong><\/p>\n<pre><code class=\"bash\">apt install sploitscan<\/code><\/pre>\n<h2>\u041f\u0435\u0440\u0432\u043e\u043d\u0430\u0447\u0430\u043b\u044c\u043d\u0430\u044f \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0430<\/h2>\n<p>\u0418\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442 \u0438\u043c\u0435\u0435\u0442 \u0432\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u0438\u043d\u0442\u0435\u0433\u0440\u0430\u0446\u0438\u0438 \u0441 <a href=\"https:\/\/vulncheck.com\/\" rel=\"noopener noreferrer nofollow\">VulnCheck<\/a> \u0438 <a href=\"https:\/\/openai.com\/index\/openai-api\/\" rel=\"noopener noreferrer nofollow\">OpenAI<\/a>, \u043f\u043e\u044d\u0442\u043e\u043c\u0443 \u0435\u0441\u043b\u0438 \u043d\u0443\u0436\u043d\u043e \u0432\u043e\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c\u0441\u044f \u044d\u0442\u0438\u043c\u0438 \u0441\u0435\u0440\u0432\u0438\u0441\u0430\u043c\u0438, \u0442\u043e \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u043e \u0441\u043e\u0437\u0434\u0430\u0442\u044c \u0444\u0430\u0439\u043b <code>config.json<\/code> \u0432 \u043e\u0434\u043d\u043e\u0439 \u0438\u0437 \u044d\u0442\u0438\u0445 \u0434\u0438\u0440\u0435\u043a\u0442\u043e\u0440\u0438\u0439:<\/p>\n<ul>\n<li>\n<p>\u0422\u0435\u043a\u0443\u0449\u0430\u044f \u0434\u0438\u0440\u0435\u043a\u0442\u043e\u0440\u0438\u044f<\/p>\n<\/li>\n<li>\n<p><code>~\/.sploitscan\/<\/code><\/p>\n<\/li>\n<li>\n<p><code>~\/.config\/sploitscan\/<\/code><\/p>\n<\/li>\n<li>\n<p><code>\/etc\/sploitscan\/<\/code><\/p>\n<\/li>\n<\/ul>\n<p>\u0412 \u0441\u043e\u0437\u0434\u0430\u043d\u043d\u044b\u0439 \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u043e\u043d\u043d\u044b\u0439 \u0444\u0430\u0439\u043b \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u043e \u0432\u043d\u0435\u0441\u0442\u0438 API \u043a\u043b\u044e\u0447\u0438:<\/p>\n<pre><code class=\"json\">{   \"vulncheck_api_key\": \"your_vulncheck_api_key\",   \"openai_api_key\": \"your_openai_api_key\" }<\/code><\/pre>\n<h2>\u041f\u0440\u0438\u043c\u0435\u0440 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u044f<\/h2>\n<p>\u0414\u043b\u044f \u0432\u044b\u0437\u043e\u0432\u0430 \u0441\u043f\u0440\u0430\u0432\u043a\u0438 \u043c\u043e\u0436\u043d\u043e \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c <code>sploitscan -h<\/code>:<\/p>\n<pre><code class=\"bash\">sploitscan -h                                             \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557      \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2557   \u2588\u2588\u2557                                      \u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551\u255a\u2550\u2550\u2588\u2588\u2554\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2557  \u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2554\u2588\u2588\u2557 \u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2554\u2550\u2550\u2550\u255d \u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551\u255a\u2588\u2588\u2557\u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551  \u2588\u2588\u2551\u2588\u2588\u2551 \u255a\u2588\u2588\u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d     \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u255d   \u255a\u2550\u255d   \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u2550\u2550\u255d                                      v0.9 \/ Alexander Hagenah \/ @xaitax \/ ah@primepage.de                                                                                                                                                                                      usage: sploitscan.py [-h] [-e {json,JSON,csv,CSV,html,HTML}] [-t {nessus,nexpose,openvas,docker}] [-i IMPORT_FILE]                      [cve_ids ...]  SploitScan: Retrieve and display vulnerability data as well as public exploits for given CVE ID(s).  positional arguments:   cve_ids               Enter one or more CVE IDs to fetch data. Separate multiple CVE IDs with spaces. Format for                         each ID: CVE-YYYY-NNNNN. This argument is optional if an import file is provided using the                         -n option.  options:   -h, --help            show this help message and exit   -e {json,JSON,csv,CSV,html,HTML}, --export {json,JSON,csv,CSV,html,HTML}                         Optional: Export the results to a JSON, CSV, or HTML file. Specify the format: 'json',                         'csv', or 'html'.   -t {nessus,nexpose,openvas,docker}, --type {nessus,nexpose,openvas,docker}                         Specify the type of the import file: 'nessus', 'nexpose', 'openvas' or 'docker'.   -i IMPORT_FILE, --import-file IMPORT_FILE                         Path to an import file from a vulnerability scanner. If used, CVE IDs can be omitted from                         the command line arguments.<\/code><\/pre>\n<p>\u041e\u043f\u0446\u0438\u044f <code>-e (--export)<\/code> \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u0435\u0442 \u044d\u043a\u0441\u043f\u043e\u0440\u0442\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0440\u0435\u0437\u0443\u043b\u044c\u0442\u0430\u0442 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u044f \u0443\u0442\u0438\u043b\u0438\u0442\u044b \u0432 \u0444\u0430\u0439\u043b\u044b \u0444\u043e\u0440\u043c\u0430\u0442\u0430 JSON, CSV \u0438\u043b\u0438 HTML.<\/p>\n<p>\u0410\u0440\u0433\u0443\u043c\u0435\u043d\u0442 <code>-t (--type)<\/code> \u0441\u043e\u0432\u043c\u0435\u0441\u0442\u043d\u043e \u0441 <code>-i (--import-file)<\/code> \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0442 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u0434\u0430\u043d\u043d\u044b\u0435 \u043e \u043d\u0430\u0439\u0434\u0435\u043d\u044b\u0445 CVE \u0438\u0437 \u0444\u0430\u0439\u043b\u043e\u0432 \u044d\u043a\u0441\u043f\u043e\u0440\u0442\u0430 \u0441\u043a\u0430\u043d\u0435\u0440\u043e\u0432 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439:<\/p>\n<ul>\n<li>\n<p><a href=\"https:\/\/www.tenable.com\/products\/nessus\" rel=\"noopener noreferrer nofollow\"><strong>Nessus<\/strong><\/a><strong> (.nessus)<\/strong><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/www.rapid7.com\/products\/nexpose\/\" rel=\"noopener noreferrer nofollow\"><strong>Nexpose<\/strong><\/a><strong> (.xml)<\/strong><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/www.openvas.org\/\" rel=\"noopener noreferrer nofollow\"><strong>OpenVAS<\/strong><\/a><strong> (.xml)<\/strong><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/docs.docker.com\/scout\/\" rel=\"noopener noreferrer nofollow\"><strong>Docker<\/strong><\/a><strong> (.json)<\/strong><\/p>\n<\/li>\n<\/ul>\n<p>\u0412\u043e\u0437\u044c\u043c\u0451\u043c \u0434\u043b\u044f \u043f\u0440\u0438\u043c\u0435\u0440\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c <strong>Spring4Shell (CVE-2022-22965)<\/strong>. \u041f\u043e\u043f\u0440\u043e\u0431\u0443\u0435\u043c \u043d\u0430\u0439\u0442\u0438 \u0434\u043b\u044f \u043d\u0435\u0451 PoC. \u0414\u043b\u044f \u044d\u0442\u043e\u0433\u043e \u043c\u043e\u0436\u043d\u043e \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c \u043a\u043e\u043c\u0430\u043d\u0434\u0443 <code>sploitscan CVE-2022-22965<\/code>:<\/p>\n<pre><code class=\"bash\">$ sploitscan CVE-2022-22965                                  \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557      \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2557   \u2588\u2588\u2557 \u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551\u255a\u2550\u2550\u2588\u2588\u2554\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2557  \u2588\u2588\u2551 \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2554\u2588\u2588\u2557 \u2588\u2588\u2551 \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2554\u2550\u2550\u2550\u255d \u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551\u255a\u2588\u2588\u2557\u2588\u2588\u2551 \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551  \u2588\u2588\u2551\u2588\u2588\u2551 \u255a\u2588\u2588\u2588\u2588\u2551 \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d     \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u255d   \u255a\u2550\u255d   \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u2550\u2550\u255d v0.9 \/ Alexander Hagenah \/ @xaitax \/ ah@primepage.de \u2554\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2557 \u2551 CVE ID: CVE-2022-22965 \u2551 \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u250c\u2500\u2500\u2500[ \ud83d\udd0d Vulnerability information ] | \u251c Published:   2022-04-01 \u251c Base Score:  N\/A (N\/A) \u251c Vector:      N\/A \u2514 Description: A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code               execution (RCE) via data binding. The specific exploit requires the application to               run on Tomcat as a WAR deployment. If the application is deployed as a Spring Boot               executable jar, i.e. the default, it is not vulnerable to the exploit. However, the               nature of the vulnerability is more general, and there may be other ways to exploit               it. \u250c\u2500\u2500\u2500[ \u267e Exploit Prediction Score (EPSS) ] | \u2514 EPSS Score:  97.48% Probability of exploitation. \u250c\u2500\u2500\u2500[ \ud83d\udee1 CISA KEV Catalog ] | \u251c Listed:      Yes \u2514 Ransomware:  Unknown \u250c\u2500\u2500\u2500[ \ud83d\udca3 GitHub Exploits ] | \u251c Date:        2023-11-13 \u2514 URL:         &lt;https:\/\/github.com\/LucasPDiniz\/CVE-2022-22965&gt; | \u251c Date:        2023-08-13 \u2514 URL:         &lt;https:\/\/github.com\/h4ck0rman\/Spring4Shell-PoC&gt; | \u251c Date:        2023-06-20 \u2514 URL:         &lt;https:\/\/github.com\/jakabakos\/spring4shell&gt; | \u251c Date:        2023-06-07 \u2514 URL:         &lt;https:\/\/github.com\/dbgee\/Spring4Shell&gt; | \u251c Date:        2023-06-04 \u2514 URL:         &lt;https:\/\/github.com\/BKLockly\/CVE-2022-22965&gt; | \u251c Date:        2023-05-31 \u2514 URL:         &lt;https:\/\/github.com\/bL34cHig0\/Telstra-Cybersecurity-Virtual-Experience-&gt; | \u251c Date:        2023-03-13 \u2514 URL:         &lt;https:\/\/github.com\/gokul-ramesh\/Spring4Shell-PoC-exploit&gt; | \u251c Date:        2023-03-02 \u2514 URL:         &lt;https:\/\/github.com\/c33dd\/CVE-2022-22965&gt; | \u251c Date:        2023-02-28 \u2514 URL:         &lt;https:\/\/github.com\/pwnwriter\/CVE-2022-22965&gt; | \u251c Date:        2023-01-04 \u2514 URL:         &lt;https:\/\/github.com\/ajith737\/Spring4Shell-CVE-2022-22965-POC&gt; \u250c\u2500\u2500\u2500[ \ud83d\udca5 VulnCheck Exploits ] | \u2514 API key for VulnCheck is not configured correctly. \u250c\u2500\u2500\u2500[ \ud83d\udc7e Exploit-DB Exploits ] | \u2514 \u274c No data found. \u250c\u2500\u2500\u2500[ \ud83c\udf86 PacketStorm Exploits ] | \u2514 URL:         &lt;https:\/\/packetstormsecurity.com\/search\/?q=CVE-2022-22965&gt; \u250c\u2500\u2500\u2500[ \u269b Nuclei Template ] | \u2514 URL:         &lt;https:\/\/raw.githubusercontent.com\/projectdiscovery\/nuclei-templates\/main\/http\/cves\/2022\/CVE-2022-22965.yaml&gt; \u250c\u2500\u2500\u2500[ \u26a0 Patching Priority Rating ] | \u2514 Priority:     A+ \u250c\u2500\u2500\u2500[ \ud83d\udcda Further References ] | \u251c &lt;https:\/\/tanzu.vmware.com\/security\/cve-2022-22965&gt; \u251c &lt;https:\/\/tools.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-java-spring-rce-Zx9GUc67&gt; \u251c &lt;https:\/\/www.oracle.com\/security-alerts\/cpuapr2022.html&gt; \u251c &lt;https:\/\/psirt.global.sonicwall.com\/vuln-detail\/SNWLID-2022-0005&gt; \u251c &lt;http:\/\/packetstormsecurity.com\/files\/166713\/Spring4Shell-Code-Execution.html&gt; \u251c &lt;https:\/\/cert-portal.siemens.com\/productcert\/pdf\/ssa-254054.pdf&gt; \u251c &lt;https:\/\/www.oracle.com\/security-alerts\/cpujul2022.html&gt; \u2514 &lt;http:\/\/packetstormsecurity.com\/files\/167011\/Spring4Shell-Spring-Framework-Class-Property-Remote-Code-Execution.html&gt; \u250c\u2500\u2500\u2500[ \ud83e\udd16 AI-Powered Risk Assessment ] | | \u274c OpenAI API key is not configured correctly. | \u2514\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500 <\/code><\/pre>\n<p>\u041a\u0430\u043a \u0432\u0438\u0434\u043d\u043e, \u0443\u0442\u0438\u043b\u0438\u0442\u0430 \u0432\u044b\u0434\u0430\u043b\u0430 \u043d\u0430\u043c \u0431\u043e\u043b\u044c\u0448\u043e\u0435 \u043a\u043e\u043b\u0438\u0447\u0435\u0441\u0442\u0432\u043e Proof-Of-Concept \u0441\u043a\u0440\u0438\u043f\u0442\u043e\u0432.<\/p>\n<h2>\u00ab\u0420\u0435\u0430\u043b\u044c\u043d\u044b\u0439\u00bb \u043f\u0440\u0438\u043c\u0435\u0440<\/h2>\n<p>\u0414\u043b\u044f \u0438\u043b\u043b\u044e\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0443\u0442\u0438\u043b\u0438\u0442\u044b \u0441\u043e\u0432\u043c\u0435\u0441\u0442\u043d\u043e \u0441\u043e \u0441\u043a\u0430\u043d\u0435\u0440\u0430\u043c\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0431\u044b\u043b\u0430 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0430 <a href=\"https:\/\/tryhackme.com\/r\/room\/spring4shell\" rel=\"noopener noreferrer nofollow\">\u0443\u044f\u0437\u0432\u0438\u043c\u0430\u044f \u043c\u0430\u0448\u0438\u043d\u0430<\/a>.  \u0417\u0430\u043f\u0443\u0449\u0435\u043d <a href=\"https:\/\/www.tenable.com\/products\/nessus\" rel=\"noopener noreferrer nofollow\">\u0441\u043a\u0430\u043d\u0435\u0440<\/a>, \u043a\u043e\u0442\u043e\u0440\u044b\u0439, \u043f\u043e\u043c\u0438\u043c\u043e \u0432\u0441\u0435\u0433\u043e \u043f\u0440\u043e\u0447\u0435\u0433\u043e, \u0432\u044b\u044f\u0432\u0438\u043b \u0440\u0430\u043d\u0435\u0435 \u0440\u0430\u0441\u043c\u043e\u0442\u0440\u0435\u043d\u043d\u0443\u044e \u0443\u044f\u0432\u0437\u0438\u043c\u043e\u0441\u0442\u044c:<\/p>\n<figure class=\"full-width\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/habrastorage.org\/r\/w1560\/getpro\/habr\/upload_files\/1af\/ea8\/bf0\/1afea8bf0d2429e2a3f482b52e743e3b.png\" width=\"1900\" height=\"842\" data-src=\"https:\/\/habrastorage.org\/getpro\/habr\/upload_files\/1af\/ea8\/bf0\/1afea8bf0d2429e2a3f482b52e743e3b.png\"\/><\/figure>\n<p>\u042d\u043a\u0441\u043f\u043e\u0440\u0442\u0438\u0440\u0443\u0435\u043c \u0444\u0430\u0439\u043b \u0441 \u0440\u0435\u0437\u0443\u043b\u044c\u0442\u0430\u0442\u0430\u043c\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0441\u043a\u0430\u043d\u0435\u0440\u0430 \u0432 \u0444\u0430\u0439\u043b <code>giscyber.nessus<\/code> \u0438 \u0437\u0430\u043f\u0443\u0441\u0442\u0438\u043c \u0443\u0442\u0438\u043b\u0438\u0442\u0443 \u043f\u0440\u0438 \u043f\u043e\u043c\u043e\u0449\u0438 <code>sploitscan -t nessus -i giscyber.nessus<\/code>:<\/p>\n<pre><code class=\"bash\">sploitscan -t nessus -i giscyber.nessus                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557      \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2557   \u2588\u2588\u2557                                      \u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551\u255a\u2550\u2550\u2588\u2588\u2554\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2557  \u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2554\u2588\u2588\u2557 \u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2554\u2550\u2550\u2550\u255d \u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551\u255a\u2588\u2588\u2557\u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551  \u2588\u2588\u2551\u2588\u2588\u2551 \u255a\u2588\u2588\u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d     \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u255d   \u255a\u2550\u255d   \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u2550\u2550\u255d                                      v0.9 \/ Alexander Hagenah \/ @xaitax \/ ah@primepage.de                                                                                                                                                                                      \ud83d\udce5 Successfully imported 1 CVE(s) from 'giscyber.nessus'.                                                                                                                      \u2554\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2557                                                                                           \u2551 CVE ID: CVE-2022-22965 \u2551 \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u255d  \u250c\u2500\u2500\u2500[ \ud83d\udd0d Vulnerability information ] | \u251c Published:   2022-04-01 \u251c Base Score:  N\/A (N\/A) \u251c Vector:      N\/A \u2514 Description: A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code                execution (RCE) via data binding. The specific exploit requires the application to                run on Tomcat as a WAR deployment. If the application is deployed as a Spring Boot                executable jar, i.e. the default, it is not vulnerable to the exploit. However, the                nature of the vulnerability is more general, and there may be other ways to exploit                it.  \u250c\u2500\u2500\u2500[ \u267e Exploit Prediction Score (EPSS) ] | \u2514 EPSS Score:  97.48% Probability of exploitation.  \u250c\u2500\u2500\u2500[ \ud83d\udee1 CISA KEV Catalog ] | \u251c Listed:      Yes \u2514 Ransomware:  Unknown  \u250c\u2500\u2500\u2500[ \ud83d\udca3 GitHub Exploits ] | \u251c Date:        2023-11-13 \u2514 URL:         https:\/\/github.com\/LucasPDiniz\/CVE-2022-22965 | \u251c Date:        2023-08-13 \u2514 URL:         https:\/\/github.com\/h4ck0rman\/Spring4Shell-PoC | \u251c Date:        2023-06-20 \u2514 URL:         https:\/\/github.com\/jakabakos\/spring4shell | \u251c Date:        2023-06-07 \u2514 URL:         https:\/\/github.com\/dbgee\/Spring4Shell | \u251c Date:        2023-06-04 \u2514 URL:         https:\/\/github.com\/BKLockly\/CVE-2022-22965 | \u251c Date:        2023-05-31 \u2514 URL:         https:\/\/github.com\/bL34cHig0\/Telstra-Cybersecurity-Virtual-Experience- | \u251c Date:        2023-03-13 \u2514 URL:         https:\/\/github.com\/gokul-ramesh\/Spring4Shell-PoC-exploit | \u251c Date:        2023-03-02 \u2514 URL:         https:\/\/github.com\/c33dd\/CVE-2022-22965 | \u251c Date:        2023-02-28 \u2514 URL:         https:\/\/github.com\/pwnwriter\/CVE-2022-22965 | \u251c Date:        2023-01-04 \u2514 URL:         https:\/\/github.com\/ajith737\/Spring4Shell-CVE-2022-22965-POC  \u250c\u2500\u2500\u2500[ \ud83d\udca5 VulnCheck Exploits ] | \u2514 API key for VulnCheck is not configured correctly.  \u250c\u2500\u2500\u2500[ \ud83d\udc7e Exploit-DB Exploits ] | \u2514 \u274c No data found.  \u250c\u2500\u2500\u2500[ \ud83c\udf86 PacketStorm Exploits ] | \u2514 URL:         https:\/\/packetstormsecurity.com\/search\/?q=CVE-2022-22965  \u250c\u2500\u2500\u2500[ \u269b Nuclei Template ] | \u2514 URL:         https:\/\/raw.githubusercontent.com\/projectdiscovery\/nuclei-templates\/main\/http\/cves\/2022\/CVE-2022-22965.yaml  \u250c\u2500\u2500\u2500[ \u26a0 Patching Priority Rating ] | \u2514 Priority:     A+  \u250c\u2500\u2500\u2500[ \ud83d\udcda Further References ] | \u251c https:\/\/tanzu.vmware.com\/security\/cve-2022-22965 \u251c https:\/\/tools.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-java-spring-rce-Zx9GUc67 \u251c https:\/\/www.oracle.com\/security-alerts\/cpuapr2022.html \u251c https:\/\/psirt.global.sonicwall.com\/vuln-detail\/SNWLID-2022-0005 \u251c http:\/\/packetstormsecurity.com\/files\/166713\/Spring4Shell-Code-Execution.html \u251c https:\/\/cert-portal.siemens.com\/productcert\/pdf\/ssa-254054.pdf \u251c https:\/\/www.oracle.com\/security-alerts\/cpujul2022.html \u2514 http:\/\/packetstormsecurity.com\/files\/167011\/Spring4Shell-Spring-Framework-Class-Property-Remote-Code-Execution.html  \u250c\u2500\u2500\u2500[ \ud83e\udd16 AI-Powered Risk Assessment ] | | \u274c OpenAI API key is not configured correctly. | \u2514\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500<\/code><\/pre>\n<p>\u0418\u0441\u043f\u043e\u043b\u044c\u0443\u0437\u0435\u043c \u043f\u0435\u0440\u0432\u044b\u0439 <a href=\"https:\/\/github.com\/LucasPDiniz\/CVE-2022-22965\" rel=\"noopener noreferrer nofollow\">\u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442<\/a> \u0438\u0437 \u0441\u043f\u0438\u0441\u043a\u0430 \u043d\u0430 \u0446\u0435\u043b\u0435\u0432\u043e\u043c \u043f\u0440\u0438\u043b\u043e\u0436\u0435\u043d\u0438\u0438:<\/p>\n<figure class=\"full-width\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/habrastorage.org\/r\/w1560\/getpro\/habr\/upload_files\/27d\/180\/5fc\/27d1805fc858a10e96011d3ae4d46bff.png\" width=\"655\" height=\"69\" data-src=\"https:\/\/habrastorage.org\/getpro\/habr\/upload_files\/27d\/180\/5fc\/27d1805fc858a10e96011d3ae4d46bff.png\"\/><\/figure>\n<p>\u041f\u0440\u043e\u0432\u0435\u0440\u0438\u043c, \u0441\u0440\u0430\u0431\u043e\u0442\u0430\u043b \u043b\u0438 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442, \u0438 \u043f\u043e\u0440\u0430\u0434\u0443\u0435\u043c\u0441\u044f:<\/p>\n<figure class=\"full-width\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/habrastorage.org\/r\/w1560\/getpro\/habr\/upload_files\/404\/5f5\/f80\/4045f5f8002054ab7398b6c8bd5f41f9.png\" width=\"668\" height=\"141\" data-src=\"https:\/\/habrastorage.org\/getpro\/habr\/upload_files\/404\/5f5\/f80\/4045f5f8002054ab7398b6c8bd5f41f9.png\"\/><\/figure>\n<h2>\u0417\u0430\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u0435<\/h2>\n<p>\u0420\u0430\u0441\u0441\u043c\u043e\u0442\u0440\u0435\u043d \u043d\u0435\u0431\u043e\u043b\u044c\u0448\u043e\u0439, \u043d\u043e \u043f\u043e\u043b\u0435\u0437\u043d\u044b\u0439 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0438\u0439 \u0441\u043e\u043a\u0440\u0430\u0442\u0438\u0442\u044c \u0432\u0440\u0435\u043c\u044f \u043d\u0430 \u043f\u043e\u0438\u0441\u043a\u0430\u0445 Proof-Of-Concept \u0441\u043a\u0440\u0438\u043f\u0442\u043e\u0432 \u043f\u0440\u0438 \u043f\u0440\u043e\u0432\u0435\u0434\u0435\u043d\u0438\u0438 \u043f\u0435\u043d\u0442\u0435\u0441\u0442\u0430 \u0438\u043b\u0438 \u0443\u0447\u0430\u0441\u0442\u0438\u0438 \u0432 CTF.<\/p>\n<p><em>\u041f\u043e\u0434\u043f\u0438\u0441\u044b\u0432\u0430\u0439\u0442\u0435\u0441\u044c \u043d\u0430 \u043d\u0430\u0448 Telegram-\u043a\u0430\u043d\u0430\u043b\u00a0<\/em><a href=\"https:\/\/t.me\/giscyberteam\" rel=\"noopener noreferrer nofollow\"><em>https:\/\/t.me\/giscyberteam<\/em><\/a><\/p>\n<\/p>\n<\/div>\n<\/div>\n<\/div>\n<p><!----><!----><\/div>\n<p><!----><!----><br \/> \u0441\u0441\u044b\u043b\u043a\u0430 \u043d\u0430 \u043e\u0440\u0438\u0433\u0438\u043d\u0430\u043b \u0441\u0442\u0430\u0442\u044c\u0438 <a href=\"https:\/\/habr.com\/ru\/articles\/867302\/\"> https:\/\/habr.com\/ru\/articles\/867302\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<div><!--[--><!--]--><\/div>\n<div id=\"post-content-body\">\n<div>\n<div class=\"article-formatted-body article-formatted-body article-formatted-body_version-2\">\n<div xmlns=\"http:\/\/www.w3.org\/1999\/xhtml\">\n<h2>\u0412\u0432\u0435\u0434\u0435\u043d\u0438\u0435<\/h2>\n<p>\u0412 <strong>Kali Linux 2024.2 Release<\/strong> \u0434\u043e\u0431\u0430\u0432\u0438\u043b\u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0438\u0439 \u0430\u0432\u0442\u043e\u043c\u0430\u0442\u0438\u0437\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043f\u043e\u0438\u0441\u043a PoC \u0441\u043a\u0440\u0438\u043f\u0442\u043e\u0432 \u0434\u043b\u044f \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 &#8212; <a href=\"https:\/\/github.com\/xaitax\/SploitScan\" rel=\"noopener noreferrer nofollow\"><strong>sploitscan<\/strong><\/a>. \u041d\u0430 \u043c\u043e\u043c\u0435\u043d\u0442 \u043d\u0430\u043f\u0438\u0441\u0430\u043d\u0438\u044f \u0441\u0442\u0430\u0442\u044c\u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u0438\u0432\u0430\u0435\u0442 \u0441\u043b\u0435\u0434\u0443\u044e\u0449\u0438\u0435 \u0431\u0430\u0437\u044b \u0434\u0430\u043d\u043d\u044b\u0445 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u043e\u0432:<\/p>\n<ul>\n<li>\n<p><a href=\"https:\/\/poc-in-github.motikan2010.net\/\" rel=\"noopener noreferrer nofollow\"><strong>GitHub<\/strong><\/a><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/www.exploit-db.com\/\" rel=\"noopener noreferrer nofollow\"><strong>ExploitDB<\/strong><\/a><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/vulncheck.com\/\" rel=\"noopener noreferrer nofollow\"><strong>VulnCheck<\/strong><\/a> (\u0442\u0440\u0435\u0431\u0443\u0435\u0442\u0441\u044f API \u043a\u043b\u044e\u0447)<\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/packetstormsecurity.com\/\" rel=\"noopener noreferrer nofollow\"><strong>Packet Storm<\/strong><\/a><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/github.com\/projectdiscovery\/nuclei-templates\" rel=\"noopener noreferrer nofollow\"><strong>Nuclei<\/strong><\/a><\/p>\n<\/li>\n<\/ul>\n<blockquote>\n<p>\u0414\u0430\u043d\u043d\u0430\u044f \u0441\u0442\u0430\u0442\u044c\u044f \u043f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u0430 \u0438\u0441\u043a\u043b\u044e\u0447\u0438\u0442\u0435\u043b\u044c\u043d\u043e \u0432 \u043e\u0431\u0440\u0430\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044c\u043d\u044b\u0445 \u0446\u0435\u043b\u044f\u0445. Red Team \u0441\u043e\u043e\u0431\u0449\u0435\u0441\u0442\u0432\u043e &#171;GISCYBERTEAM&#187; \u043d\u0435 \u043d\u0435\u0441\u0451\u0442 \u043e\u0442\u0432\u0435\u0442\u0441\u0442\u0432\u0435\u043d\u043d\u043e\u0441\u0442\u0438 \u0437\u0430 \u043b\u044e\u0431\u044b\u0435 \u043f\u043e\u0441\u043b\u0435\u0434\u0441\u0442\u0432\u0438\u044f \u0435\u0435 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u044f \u0442\u0440\u0435\u0442\u044c\u0438\u043c\u0438 \u043b\u0438\u0446\u0430\u043c\u0438.<\/p>\n<\/blockquote>\n<h2>\u0423\u0441\u0442\u0430\u043d\u043e\u0432\u043a\u0430<\/h2>\n<p><strong>GitHub<\/strong><\/p>\n<pre><code class=\"bash\">git clone &lt;https:\/\/github.com\/xaitax\/SploitScan.git&gt; cd sploitscan pip install -r requirements.txt<\/code><\/pre>\n<p><strong>pip<\/strong><\/p>\n<pre><code class=\"bash\">pip install --user sploitscan<\/code><\/pre>\n<p><strong>Kali\/Ubuntu\/Debian<\/strong><\/p>\n<pre><code class=\"bash\">apt install sploitscan<\/code><\/pre>\n<h2>\u041f\u0435\u0440\u0432\u043e\u043d\u0430\u0447\u0430\u043b\u044c\u043d\u0430\u044f \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0430<\/h2>\n<p>\u0418\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442 \u0438\u043c\u0435\u0435\u0442 \u0432\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u0438\u043d\u0442\u0435\u0433\u0440\u0430\u0446\u0438\u0438 \u0441 <a href=\"https:\/\/vulncheck.com\/\" rel=\"noopener noreferrer nofollow\">VulnCheck<\/a> \u0438 <a href=\"https:\/\/openai.com\/index\/openai-api\/\" rel=\"noopener noreferrer nofollow\">OpenAI<\/a>, \u043f\u043e\u044d\u0442\u043e\u043c\u0443 \u0435\u0441\u043b\u0438 \u043d\u0443\u0436\u043d\u043e \u0432\u043e\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c\u0441\u044f \u044d\u0442\u0438\u043c\u0438 \u0441\u0435\u0440\u0432\u0438\u0441\u0430\u043c\u0438, \u0442\u043e \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u043e \u0441\u043e\u0437\u0434\u0430\u0442\u044c \u0444\u0430\u0439\u043b <code>config.json<\/code> \u0432 \u043e\u0434\u043d\u043e\u0439 \u0438\u0437 \u044d\u0442\u0438\u0445 \u0434\u0438\u0440\u0435\u043a\u0442\u043e\u0440\u0438\u0439:<\/p>\n<ul>\n<li>\n<p>\u0422\u0435\u043a\u0443\u0449\u0430\u044f \u0434\u0438\u0440\u0435\u043a\u0442\u043e\u0440\u0438\u044f<\/p>\n<\/li>\n<li>\n<p><code>~\/.sploitscan\/<\/code><\/p>\n<\/li>\n<li>\n<p><code>~\/.config\/sploitscan\/<\/code><\/p>\n<\/li>\n<li>\n<p><code>\/etc\/sploitscan\/<\/code><\/p>\n<\/li>\n<\/ul>\n<p>\u0412 \u0441\u043e\u0437\u0434\u0430\u043d\u043d\u044b\u0439 \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u043e\u043d\u043d\u044b\u0439 \u0444\u0430\u0439\u043b \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u043e \u0432\u043d\u0435\u0441\u0442\u0438 API \u043a\u043b\u044e\u0447\u0438:<\/p>\n<pre><code class=\"json\">{   \"vulncheck_api_key\": \"your_vulncheck_api_key\",   \"openai_api_key\": \"your_openai_api_key\" }<\/code><\/pre>\n<h2>\u041f\u0440\u0438\u043c\u0435\u0440 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0438\u044f<\/h2>\n<p>\u0414\u043b\u044f \u0432\u044b\u0437\u043e\u0432\u0430 \u0441\u043f\u0440\u0430\u0432\u043a\u0438 \u043c\u043e\u0436\u043d\u043e \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c <code>sploitscan -h<\/code>:<\/p>\n<pre><code class=\"bash\">sploitscan -h                                             \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557      \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2557   \u2588\u2588\u2557                                      \u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551\u255a\u2550\u2550\u2588\u2588\u2554\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2557  \u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2554\u2588\u2588\u2557 \u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2554\u2550\u2550\u2550\u255d \u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551\u255a\u2588\u2588\u2557\u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551  \u2588\u2588\u2551\u2588\u2588\u2551 \u255a\u2588\u2588\u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d     \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u255d   \u255a\u2550\u255d   \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u2550\u2550\u255d                                      v0.9 \/ Alexander Hagenah \/ @xaitax \/ ah@primepage.de                                                                                                                                                                                      usage: sploitscan.py [-h] [-e {json,JSON,csv,CSV,html,HTML}] [-t {nessus,nexpose,openvas,docker}] [-i IMPORT_FILE]                      [cve_ids ...]  SploitScan: Retrieve and display vulnerability data as well as public exploits for given CVE ID(s).  positional arguments:   cve_ids               Enter one or more CVE IDs to fetch data. Separate multiple CVE IDs with spaces. Format for                         each ID: CVE-YYYY-NNNNN. This argument is optional if an import file is provided using the                         -n option.  options:   -h, --help            show this help message and exit   -e {json,JSON,csv,CSV,html,HTML}, --export {json,JSON,csv,CSV,html,HTML}                         Optional: Export the results to a JSON, CSV, or HTML file. Specify the format: 'json',                         'csv', or 'html'.   -t {nessus,nexpose,openvas,docker}, --type {nessus,nexpose,openvas,docker}                         Specify the type of the import file: 'nessus', 'nexpose', 'openvas' or 'docker'.   -i IMPORT_FILE, --import-file IMPORT_FILE                         Path to an import file from a vulnerability scanner. If used, CVE IDs can be omitted from                         the command line arguments.<\/code><\/pre>\n<p>\u041e\u043f\u0446\u0438\u044f <code>-e (--export)<\/code> \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u0435\u0442 \u044d\u043a\u0441\u043f\u043e\u0440\u0442\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0440\u0435\u0437\u0443\u043b\u044c\u0442\u0430\u0442 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u044f \u0443\u0442\u0438\u043b\u0438\u0442\u044b \u0432 \u0444\u0430\u0439\u043b\u044b \u0444\u043e\u0440\u043c\u0430\u0442\u0430 JSON, CSV \u0438\u043b\u0438 HTML.<\/p>\n<p>\u0410\u0440\u0433\u0443\u043c\u0435\u043d\u0442 <code>-t (--type)<\/code> \u0441\u043e\u0432\u043c\u0435\u0441\u0442\u043d\u043e \u0441 <code>-i (--import-file)<\/code> \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0442 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u0434\u0430\u043d\u043d\u044b\u0435 \u043e \u043d\u0430\u0439\u0434\u0435\u043d\u044b\u0445 CVE \u0438\u0437 \u0444\u0430\u0439\u043b\u043e\u0432 \u044d\u043a\u0441\u043f\u043e\u0440\u0442\u0430 \u0441\u043a\u0430\u043d\u0435\u0440\u043e\u0432 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439:<\/p>\n<ul>\n<li>\n<p><a href=\"https:\/\/www.tenable.com\/products\/nessus\" rel=\"noopener noreferrer nofollow\"><strong>Nessus<\/strong><\/a><strong> (.nessus)<\/strong><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/www.rapid7.com\/products\/nexpose\/\" rel=\"noopener noreferrer nofollow\"><strong>Nexpose<\/strong><\/a><strong> (.xml)<\/strong><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/www.openvas.org\/\" rel=\"noopener noreferrer nofollow\"><strong>OpenVAS<\/strong><\/a><strong> (.xml)<\/strong><\/p>\n<\/li>\n<li>\n<p><a href=\"https:\/\/docs.docker.com\/scout\/\" rel=\"noopener noreferrer nofollow\"><strong>Docker<\/strong><\/a><strong> (.json)<\/strong><\/p>\n<\/li>\n<\/ul>\n<p>\u0412\u043e\u0437\u044c\u043c\u0451\u043c \u0434\u043b\u044f \u043f\u0440\u0438\u043c\u0435\u0440\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c <strong>Spring4Shell (CVE-2022-22965)<\/strong>. \u041f\u043e\u043f\u0440\u043e\u0431\u0443\u0435\u043c \u043d\u0430\u0439\u0442\u0438 \u0434\u043b\u044f \u043d\u0435\u0451 PoC. \u0414\u043b\u044f \u044d\u0442\u043e\u0433\u043e \u043c\u043e\u0436\u043d\u043e \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c \u043a\u043e\u043c\u0430\u043d\u0434\u0443 <code>sploitscan CVE-2022-22965<\/code>:<\/p>\n<pre><code class=\"bash\">$ sploitscan CVE-2022-22965                                  \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557      \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2557   \u2588\u2588\u2557 \u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551\u255a\u2550\u2550\u2588\u2588\u2554\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2557  \u2588\u2588\u2551 \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2554\u2588\u2588\u2557 \u2588\u2588\u2551 \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2554\u2550\u2550\u2550\u255d \u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551\u255a\u2588\u2588\u2557\u2588\u2588\u2551 \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551  \u2588\u2588\u2551\u2588\u2588\u2551 \u255a\u2588\u2588\u2588\u2588\u2551 \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d     \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u255d   \u255a\u2550\u255d   \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u2550\u2550\u255d v0.9 \/ Alexander Hagenah \/ @xaitax \/ ah@primepage.de \u2554\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2557 \u2551 CVE ID: CVE-2022-22965 \u2551 \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u250c\u2500\u2500\u2500[ \ud83d\udd0d Vulnerability information ] | \u251c Published:   2022-04-01 \u251c Base Score:  N\/A (N\/A) \u251c Vector:      N\/A \u2514 Description: A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code               execution (RCE) via data binding. The specific exploit requires the application to               run on Tomcat as a WAR deployment. If the application is deployed as a Spring Boot               executable jar, i.e. the default, it is not vulnerable to the exploit. However, the               nature of the vulnerability is more general, and there may be other ways to exploit               it. \u250c\u2500\u2500\u2500[ \u267e Exploit Prediction Score (EPSS) ] | \u2514 EPSS Score:  97.48% Probability of exploitation. \u250c\u2500\u2500\u2500[ \ud83d\udee1 CISA KEV Catalog ] | \u251c Listed:      Yes \u2514 Ransomware:  Unknown \u250c\u2500\u2500\u2500[ \ud83d\udca3 GitHub Exploits ] | \u251c Date:        2023-11-13 \u2514 URL:         &lt;https:\/\/github.com\/LucasPDiniz\/CVE-2022-22965&gt; | \u251c Date:        2023-08-13 \u2514 URL:         &lt;https:\/\/github.com\/h4ck0rman\/Spring4Shell-PoC&gt; | \u251c Date:        2023-06-20 \u2514 URL:         &lt;https:\/\/github.com\/jakabakos\/spring4shell&gt; | \u251c Date:        2023-06-07 \u2514 URL:         &lt;https:\/\/github.com\/dbgee\/Spring4Shell&gt; | \u251c Date:        2023-06-04 \u2514 URL:         &lt;https:\/\/github.com\/BKLockly\/CVE-2022-22965&gt; | \u251c Date:        2023-05-31 \u2514 URL:         &lt;https:\/\/github.com\/bL34cHig0\/Telstra-Cybersecurity-Virtual-Experience-&gt; | \u251c Date:        2023-03-13 \u2514 URL:         &lt;https:\/\/github.com\/gokul-ramesh\/Spring4Shell-PoC-exploit&gt; | \u251c Date:        2023-03-02 \u2514 URL:         &lt;https:\/\/github.com\/c33dd\/CVE-2022-22965&gt; | \u251c Date:        2023-02-28 \u2514 URL:         &lt;https:\/\/github.com\/pwnwriter\/CVE-2022-22965&gt; | \u251c Date:        2023-01-04 \u2514 URL:         &lt;https:\/\/github.com\/ajith737\/Spring4Shell-CVE-2022-22965-POC&gt; \u250c\u2500\u2500\u2500[ \ud83d\udca5 VulnCheck Exploits ] | \u2514 API key for VulnCheck is not configured correctly. \u250c\u2500\u2500\u2500[ \ud83d\udc7e Exploit-DB Exploits ] | \u2514 \u274c No data found. \u250c\u2500\u2500\u2500[ \ud83c\udf86 PacketStorm Exploits ] | \u2514 URL:         &lt;https:\/\/packetstormsecurity.com\/search\/?q=CVE-2022-22965&gt; \u250c\u2500\u2500\u2500[ \u269b Nuclei Template ] | \u2514 URL:         &lt;https:\/\/raw.githubusercontent.com\/projectdiscovery\/nuclei-templates\/main\/http\/cves\/2022\/CVE-2022-22965.yaml&gt; \u250c\u2500\u2500\u2500[ \u26a0 Patching Priority Rating ] | \u2514 Priority:     A+ \u250c\u2500\u2500\u2500[ \ud83d\udcda Further References ] | \u251c &lt;https:\/\/tanzu.vmware.com\/security\/cve-2022-22965&gt; \u251c &lt;https:\/\/tools.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-java-spring-rce-Zx9GUc67&gt; \u251c &lt;https:\/\/www.oracle.com\/security-alerts\/cpuapr2022.html&gt; \u251c &lt;https:\/\/psirt.global.sonicwall.com\/vuln-detail\/SNWLID-2022-0005&gt; \u251c &lt;http:\/\/packetstormsecurity.com\/files\/166713\/Spring4Shell-Code-Execution.html&gt; \u251c &lt;https:\/\/cert-portal.siemens.com\/productcert\/pdf\/ssa-254054.pdf&gt; \u251c &lt;https:\/\/www.oracle.com\/security-alerts\/cpujul2022.html&gt; \u2514 &lt;http:\/\/packetstormsecurity.com\/files\/167011\/Spring4Shell-Spring-Framework-Class-Property-Remote-Code-Execution.html&gt; \u250c\u2500\u2500\u2500[ \ud83e\udd16 AI-Powered Risk Assessment ] | | \u274c OpenAI API key is not configured correctly. | \u2514\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500\u2500 <\/code><\/pre>\n<p>\u041a\u0430\u043a \u0432\u0438\u0434\u043d\u043e, \u0443\u0442\u0438\u043b\u0438\u0442\u0430 \u0432\u044b\u0434\u0430\u043b\u0430 \u043d\u0430\u043c \u0431\u043e\u043b\u044c\u0448\u043e\u0435 \u043a\u043e\u043b\u0438\u0447\u0435\u0441\u0442\u0432\u043e Proof-Of-Concept \u0441\u043a\u0440\u0438\u043f\u0442\u043e\u0432.<\/p>\n<h2>\u00ab\u0420\u0435\u0430\u043b\u044c\u043d\u044b\u0439\u00bb \u043f\u0440\u0438\u043c\u0435\u0440<\/h2>\n<p>\u0414\u043b\u044f \u0438\u043b\u043b\u044e\u0441\u0442\u0440\u0430\u0446\u0438\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0443\u0442\u0438\u043b\u0438\u0442\u044b \u0441\u043e\u0432\u043c\u0435\u0441\u0442\u043d\u043e \u0441\u043e \u0441\u043a\u0430\u043d\u0435\u0440\u0430\u043c\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439 \u0431\u044b\u043b\u0430 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043d\u0430 <a href=\"https:\/\/tryhackme.com\/r\/room\/spring4shell\" rel=\"noopener noreferrer nofollow\">\u0443\u044f\u0437\u0432\u0438\u043c\u0430\u044f \u043c\u0430\u0448\u0438\u043d\u0430<\/a>.  \u0417\u0430\u043f\u0443\u0449\u0435\u043d <a href=\"https:\/\/www.tenable.com\/products\/nessus\" rel=\"noopener noreferrer nofollow\">\u0441\u043a\u0430\u043d\u0435\u0440<\/a>, \u043a\u043e\u0442\u043e\u0440\u044b\u0439, \u043f\u043e\u043c\u0438\u043c\u043e \u0432\u0441\u0435\u0433\u043e \u043f\u0440\u043e\u0447\u0435\u0433\u043e, \u0432\u044b\u044f\u0432\u0438\u043b \u0440\u0430\u043d\u0435\u0435 \u0440\u0430\u0441\u043c\u043e\u0442\u0440\u0435\u043d\u043d\u0443\u044e \u0443\u044f\u0432\u0437\u0438\u043c\u043e\u0441\u0442\u044c:<\/p>\n<figure class=\"full-width\"><\/figure>\n<p>\u042d\u043a\u0441\u043f\u043e\u0440\u0442\u0438\u0440\u0443\u0435\u043c \u0444\u0430\u0439\u043b \u0441 \u0440\u0435\u0437\u0443\u043b\u044c\u0442\u0430\u0442\u0430\u043c\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0441\u043a\u0430\u043d\u0435\u0440\u0430 \u0432 \u0444\u0430\u0439\u043b <code>giscyber.nessus<\/code> \u0438 \u0437\u0430\u043f\u0443\u0441\u0442\u0438\u043c \u0443\u0442\u0438\u043b\u0438\u0442\u0443 \u043f\u0440\u0438 \u043f\u043e\u043c\u043e\u0449\u0438 <code>sploitscan -t nessus -i giscyber.nessus<\/code>:<\/p>\n<pre><code class=\"bash\">sploitscan -t nessus -i giscyber.nessus                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557      \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2588\u2588\u2557 \u2588\u2588\u2588\u2557   \u2588\u2588\u2557                                      \u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2551\u255a\u2550\u2550\u2588\u2588\u2554\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2550\u2550\u255d\u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2557  \u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2554\u2588\u2588\u2557 \u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2554\u2550\u2550\u2550\u255d \u2588\u2588\u2551     \u2588\u2588\u2551   \u2588\u2588\u2551\u2588\u2588\u2551   \u2588\u2588\u2551   \u255a\u2550\u2550\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2554\u2550\u2550\u2588\u2588\u2551\u2588\u2588\u2551\u255a\u2588\u2588\u2557\u2588\u2588\u2551                                      \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u2588\u2588\u2551     \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2554\u255d\u2588\u2588\u2551   \u2588\u2588\u2551   \u2588\u2588\u2588\u2588\u2588\u2588\u2588\u2551\u255a\u2588\u2588\u2588\u2588\u2588\u2588\u2557\u2588\u2588\u2551  \u2588\u2588\u2551\u2588\u2588\u2551 \u255a\u2588\u2588\u2588\u2588\u2551                                      \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d     \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u255d   \u255a\u2550\u255d   \u255a\u2550\u2550\u2550\u2550\u2550\u2550\u255d \u255a\u2550\u2550\u2550\u2550\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u255d\u255a\u2550\u255d  \u255a\u2550\u2550\u2550\u255d                                      v0.9 \/ Alexander Hagenah \/ @xaitax \/ ah@primepage.de                                                                                                                                                                                      \ud83d\udce5 Successfully imported 1 CVE(s) from 'giscyber.nessus'.                                                                                                                      \u2554\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2550\u2557                                                             <\/code><\/pre>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[],"class_list":["post-443013","post","type-post","status-publish","format-standard","hentry"],"_links":{"self":[{"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=\/wp\/v2\/posts\/443013","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=443013"}],"version-history":[{"count":0,"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=\/wp\/v2\/posts\/443013\/revisions"}],"wp:attachment":[{"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=443013"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=443013"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/savepearlharbor.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=443013"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}