Sploitus

Exploit for CVE-2022-46169

kitploit · 2026-08-27

Exploit Code

MARKDOWN21 lines
## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-SASPECT488-CVE-2022-46169
# CVE-2022-46169

Questo repository contiene una Proof of Concept (PoC) per la CVE-2022-46169 - RCE non autenticata su Cacti <= 1.2.22 concatenando un bypass dell'autenticazione e un'iniezione di comandi, descritta da Sonar in questo post del blog. Le stesse vulnerabilità sono state scoperte anche da: Steven Seeley (mr_me) di Source Incite.

## Utilizzo:

root@kitploit:~
    
    
    positional arguments:
      target                URL of the Cacti application.
    
    optional arguments:
      -f FILE               File containing the command
      -c CMD                Command
      --n_host_ids          The range of host_ids to try (0 - n)
      --n_local_data_ids    The range of local_data_ids to try (0 - n)
    

![](https://assets.kitploit.com/production/public/readmes/31739/22de9dc9ccb530517671e11070fe2dd75502be4b77811203eb133e37563a8482.gif)