Sploitus

Exploit for CVE-2018-2894 CVE-2018-2894 CVE-2020-0796

githubexploit · 2019-11-19

Exploit Code

README41 lines
## https://sploitus.com/exploit?id=387719E9-0938-5546-95DA-D88EC7E3FF13
#Ladon Scanner for Python

[![Author](https://img.shields.io/badge/Author-k8gege-blueviolet)](https://github.com/k8gege) 
[![Ladon](https://img.shields.io/badge/Ladon-7.7-yellowgreen)](https://github.com/k8gege/Ladon) 
[![Bin](https://img.shields.io/badge/Ladon-Bin-ff69b4)](https://github.com/k8gege/Ladon/releases) 
[![GitHub issues](https://img.shields.io/github/issues/k8gege/Ladon)](https://github.com/k8gege/Ladon/issues) 
[![Github Stars](https://img.shields.io/github/stars/k8gege/Ladon)](https://github.com/k8gege/Ladon) 
[![GitHub forks](https://img.shields.io/github/forks/k8gege/Ladon)](https://github.com/k8gege/Ladon)
[![GitHub license](https://img.shields.io/github/license/k8gege/Ladon)](https://github.com/k8gege/Ladon)


### PyLadon
The Python version currently has fewer functions. Both on Windows and Linux systems, its performance and speed are inferior to Ladon.exe.
The only advantage is cross-platform compatibility. We will add related features in the future. However, the drawback is that the Python-based program is quite large, making it unsuitable for direct use.
The so-called cross-platform doesn’t fully apply. On some older Linux systems, many Python dependencies may not be installed, and compilation may be difficult. It’s recommended to use the GO version.


### Program Overview

Ladon is a multi-threaded plugin-based tool for large-scale network penetration testing. It includes port scanning, service identification, network assets, password cracking, high-risk vulnerability detection, and one-click GetShell. It supports batch A, B, and C domain scans as well as cross-domain scans. It also supports scans of URLs, hosts, and domain lists. Version 7.5 includes 101 functional modules and 18 external modules. It can quickly obtain information about target network hosts, computer names, workgroups, shared resources, network card addresses, operating system versions, websites, subdomains, middleware, open services, routers, databases, etc., using various protocols and methods. Vulnerability detection includes MS17010, SMBGhost, WebLogic, ActiveMQ, Tomcat, Struts2 series, etc. Password cracking includes 13 types, such as databases (MySQL, Oracle, MSSQL), FTP, SSH, VNC, Windows (LDAP, SMB/IPC, NBT, WMI, SmbHash, WmiHash, Winrm), BasicAuth, Tomcat, WebLogic, Rar, etc. Remote command execution includes (wmiexe/psexec/atexec/sshexec/jspshell). The web fingerprint recognition module can identify 75 types (web applications, middleware, script types, page types), etc. Plugins can be highly customized. POC support includes .NET assemblies, DLLs (C#, Delphi, VC), PowerShell, and other languages. It supports batch invocation of any external programs or commands via INI configuration. The EXP generator allows for quick expansion of scanning capabilities by generating vulnerability POCs. Ladon supports Cobalt Strike plugin-based scanning to quickly expand internal networks for lateral movement. ### Usage Instructions

ID | Topic | URL 
-|-|-
0 | Ladon documentation homepage | https://k8gege.org/Ladon/
1 | Ladon basic documentation | http://k8gege.org/p/648af4b3.html
2 | Ladon usage examples | http://k8gege.org/Ladon/example.html
3 | Detailed basic usage | https://github.com/k8gege/Ladon/wiki/Ladon-Usage
4 | Cobalt Strike | https://github.com/k8gege/Aggressor
5 | EXP generator usage | https://github.com/k8gege/Ladon/wiki/LadonExp-Usage
6 | Highly customizable plugins | https://github.com/k8gege/Ladon/wiki/Ladon-Diy-Moudle
7 | External module references | https://github.com/k8gege/K8CScan/wiki
8 | PowerLadon | https://github.com/k8gege/powerladon
9 | PythonLadon | https://github.com/k8gege/PyLadon
10 | LinuxLadon | https://github.com/k8gege/KaliLadon
11 | LadonGo | https://github.com/k8gege/LadonGo
12 | Vulnerability demonstration videos | https://github.com/k8gege/K8CScan/tree/master/Video
13 | Ladon6.0 documentation | http://k8gege.org/p/56393.html
14 | Ladon6.2 documentation | http://k8gege.org/p/39070.html
13 | Ladon6.4 documentation | http://k8gege.org/p/55476.html
16 | Ladon6.5 documentation | http://k8gege.org/Ladon/WinShell.html