##
VMware Workspace ONE Access और Identity Manager में SSTI के माध्यम से RCE।
CVE-2022-22954.py [-h] -m SET_MODE [-i IP] [-c CMD]
-h, --help show this help message and exit
* shodan: "http.favicon.hash:-1250474341" क्वेरी के आधार पर IP सूची प्राप्त करता है
* manual: -m manual मोड में IP और CMD तर्क पास करें
यह केवल एक PoC है। इसे अपने जोखिम पर उपयोग करें, न कि प्रोडक्शन या वास्तविक वातावरण में। मुझसे यह मत पूछिए कि कोड ऐसा क्यों है या यह अच्छा है या बुरा, मुझे परवाह नहीं है। मैं कोई कूल प्रोग्रामर नहीं हूँ और मेरा कोड बदसूरत है।
zoomeye 'iconhash:-1250474341' -num 780 -filter=ip,port
zoomeye 'banner:/SAAS/auth/login' -num 900 -filter=ip,port
shodan "http.favicon.hash:-1250474341" --fields=ip_str,port --separator ":" --limit 1000 | grep ''
shodan 'title:"Workspace ONE Access"' --fields=ip_str,port --separator ":" --limit 1000 | grep ''
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
