Skip to content

vulcat-v2.0.0

Latest
Compare
Choose a tag to compare
@CLincat CLincat released this 15 Mar 12:21
· 2 commits to main since this release

2023.03.15
vulcat-v2.0.0

  • 重写vulcat部分核心代码
  1. vulcat二代,初始版本号为v2.0.0
  2. 移除-a/--application选项,该选项的功能合并到-v/--vuln当中,点我查看示例
  3. POC插件化,即插即用,现在你可以轻松地编写自己的POC 并在vulcat中使用,点我查看示例
  • 新POC:
  1. 74cms v5.0.1 前台AjaxPersonalController.class.php存在SQL注入 (暂无编号)
  2. 74cms v6.0.4 帮助中心搜索框XSS (暂无编号)
  3. 2020年 VMware vCenter 6.5任意文件读取 (暂无编号)
  4. VMware vSphere Client 远程代码执行 (CVE-2021-21972)

  • Rewrite some of the core code
  1. vulcat-v2.0.0 !!!
  2. Remove the -a/--application option, the functionality of this option is merged into -v/--vuln, click me to see the example
  3. POC plug-in, plug and play, now you can easily write your own POC and use it in vulcat, click me to see the example
  • new POC:
  1. v5.0.1 AjaxPersonalController.class.php SQLinject (None)
  2. v6.0.4 help center search box-XSS (None)
  3. In 2020 VMware vCenter v6.5 Any file read (None)
  4. VMware vSphere Client RCE (CVE-2021-21972)