Sploitus

Exploit for CVE-2022-26134

kitploit · 2026-08-25

Exploit Code

MARKDOWN30 lines
## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-AMOLOHT-CVE-2022-26134
# 「💥」CVE-2022-26134

![](https://assets.kitploit.com/production/public/readmes/15225/352705178e143256c0d5a42530e6fe10d3193f1d98c0b45b6a0ad73a1f4601bd.png)

## 描述

受影响的 Confluence Server 和 Data Center 版本中存在一个 OGNL 注入漏洞,允许未经身份验证的攻击者在 Confluence Server 或 Data Center 实例上执行任意代码。受影响的版本范围:1.3.0 至 7.4.17 之前、7.13.0 至 7.13.7 之前、7.14.0 至 7.14.3 之前、7.15.0 至 7.15.2 之前、7.16.0 至 7.16.4 之前、7.17.0 至 7.17.4 之前、以及 7.18.0 至 7.18.1 之前。

## 演示

![demo](https://assets.kitploit.com/production/public/readmes/15225/b88c84e8aad6d73caa498233d55123f10a1a20faac436a74ac6e8858fe5446cf.png)

![demo2](https://assets.kitploit.com/production/public/readmes/15225/885cfe8742e0205f723d7332e99299e04754f2251f00de6e22080a7983abf8d7.png)

## 使用方法

root@kitploit:~
    
    
    pip install requests
    git clone https://github.com/AmoloHT/CVE-2022-26134
    cd CVE-2022-26134
    python3 cve-2022-26134.py -cmd 'id' -u http://TARGET.TLD
    

## 参考

  * URL:https://vulners.com/cve/CVE-2022-26134
  * MISC: