mauricelambert / LabAutomationCVE-2021-43798

This script implements a lab automation where I exploit CVE-2021-43798 to steal user secrets and then gain privileges on a Linux system.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

LabAutomationCVE-2021-43798

I make a script for pentest automation where i exploit CVE-2021-43798 (a path traversal on Grafana) to steal user secrets (SSH key) and then gain privileges on a Linux system (using SUID).

I automate this lab to share the pentest methodology.

About

This script implements a lab automation where I exploit CVE-2021-43798 to steal user secrets and then gain privileges on a Linux system.

License:GNU General Public License v3.0


Languages

Language:Python 100.0%