#Super #Fast #Exploit #cacti #Authenticated #RCE with #LazyOwn
[⚠] Starting 👽 LazyOwn Framew0rk ☠ [;,;] Autor: grisUN0
[wlp2s0] 192.168.1.92
[tun0] 10.10.14.6
[+] IP from tun0 copied to clipboard :) [👽]
[+] ip from payload: rhost='10.10.11.30', copied to clipboard :) [👽]
[*] Welcome to the LazyOwn Framework [;,;] release/0.1.26
[*] interactive sHell! Type ? to list commands
[!] Please do not use in military or secret service organizations,
[!] or for illegal purposes (this is non-binding,
[!] these *** ignore laws and ethics anyway)
[+] Github: https://github.com/grisuno/LazyOwn
[+] Web: https://grisuno.github.io/LazyOwn/
[+] Reddit: / lazyown
[+] Facebook: https://web.facebook.com/profile.php?...
[+] hackTheBox: https://app.hackthebox.com/teams/over...
[+] Patreon: / lazyown
┌─[LazyOwn👽10.10.14.6 ~/home/gris/tools/LazyOwn][10.10.11.30][http://monitorsthree.htb/]
└╼ $ ss cacti
[+] Searching in searchsploit [👽]
----------------------------------------------------------------------------------------------------- ---------------------------------
Exploit Title | Path
----------------------------------------------------------------------------------------------------- ---------------------------------
Cacti - 'graph_view.php' Remote Command Execution (Metasploit) | php/webapps/16881.rb
Cacti 0.8.6-d - 'graph_view.php' Command Injection (Metasploit) | php/webapps/9911.rb
Cacti 0.8.6d - Remote Command Execution | php/webapps/1062.pl
Cacti 0.8.6i - 'cmd.php?popen()' Remote Injection | php/webapps/3029.php
Cacti 0.8.6i - 'copy_cacti_user.php' SQL Injection Create Admin | php/webapps/3045.php
Cacti 0.8.7 (RedHat High Performance Computing [HPC]) - 'utilities.php?Filter' Cross-Site Scripting | php/webapps/34504.txt
Cacti 0.8.7 - '/index.php/sql.php?Login Action login_username' SQL Injection | php/webapps/31161.txt
Cacti 0.8.7 - 'data_input.php' Cross-Site Scripting | php/webapps/33000.txt
Cacti 0.8.7 - 'graph.php?view_type' Cross-Site Scripting | php/webapps/31157.txt
Cacti 0.8.7 - 'graph_view.php?filter' Cross-Site Scripting | php/webapps/31158.txt
Cacti 0.8.7 - 'graph_view.php?graph_list' SQL Injection | php/webapps/31156.txt
Cacti 0.8.7 - 'graph_xport.php?local_graph_id' SQL Injection | php/webapps/31160.txt
Cacti 0.8.7 - 'tree.php' Multiple SQL Injections | php/webapps/31159.txt
Cacti 0.8.7e - Multiple Vulnerabilities | php/webapps/10234.txt
Cacti 0.8.7e - OS Command Injection | php/webapps/12339.txt
Cacti 0.8.7e - SQL Injection | php/webapps/12338.txt
Cacti 0.8.x - 'graph.php' Multiple Cross-Site Scripting Vulnerabilities | php/webapps/33374.txt
Cacti 1.2.12 - 'filter' SQL Injection | php/webapps/49810.py
Cacti 1.2.24 - Authenticated command injection when using SNMP options | php/webapps/51740.txt
Cacti 1.2.8 - Authenticated Remote Code Execution | multiple/webapps/48144.py
Cacti 1.2.8 - Remote Code Execution | php/webapps/48128.py
Cacti 1.2.8 - Unauthenticated Remote Code Execution | multiple/webapps/48145.py
Cacti Superlinks Plugin 1.4-2 - SQL Injection | php/webapps/33809.txt
Cacti Superlinks Plugin 1.4-2 - SQL Injection / Local File Inclusion