A Python replicated exploit for Webmin 1.580 /file/show.cgi Remote Code Execution
Go to file
John Hammond 7aa7d7a59e Modified argparse to run in its own get_args function 2021-09-04 01:39:17 -04:00
CVE-2012-2982.py Modified argparse to run in its own get_args function 2021-09-04 01:39:17 -04:00
README.md Added initial exploit 2021-09-04 01:33:41 -04:00

README.md

CVE-2012-2982

John Hammond | September 4th, 2021


Checking searchsploit for Webmin 1.580 I only saw a Metasploit module for the /file/show.cgi Remote Code Execution attack on that legacy Webmin version.

This code is an attempt to recreate that in Python without using Metasploit.

Files

  • CVE-2021-2982.py - this offers a one-shot capability to run a single command