This script implements a lab automation where I exploit CVE-2021-43798 to steal user secrets and then gain privileges on a Linux system.# LabAutomationCVE-2021-43798
I make a script for pentest automation where i exploit CVE-2021-43798 (a path traversal on Grafana) to steal user secrets (SSH key) and then gain privileges on a Linux system (using SUID).
I automate this lab to share the pentest methodology.
[4.0K] /data/pocs/dec30469b2bb7375b89668e7a0619a277e734111
├── [4.5K] CVE_2021_43798.py
├── [ 34K] LICENSE.txt
└── [ 275] README.md
0 directories, 3 files