Back to Directory

Commix

Exploitation

Automated Command Injection exploitation tool.

Customize the parameters below to generate your target command. Use the preview box to verify syntax and click the clipboard icon to copy.

Configure Options

The target URL with the (potentially) vulnerable parameter.

Generated Command

bash - CommandsLab
$ commix --url="http://target.com" --batch

Command Breakdown

  • Tool:Commix — Automated Command Injection exploitation tool.
  • Level:1 (Default)
  • Batch Mode:Enabled — Never ask for user input, use default behavior.

About this tool

Commix (short for [comm]and [i]njection [e]xploiter) is an open source penetration testing tool that automates the detection and exploitation of command injection vulnerabilities.

Pro Tip: Focus on understanding the core options first. You can use the generated command directly in your terminal, and view the Command Breakdown above to see what each flag does.