Skip to content

vulcat-v1.2.0

Compare
Choose a tag to compare
@CLincat CLincat released this 01 Mar 09:36
· 4 commits to main since this release
fde0fef

2023.03.01
vulcat-v1.2.0

  • 新增POC:
  1. Fastjson <= 1.2.62 反序列化 (暂无编号)
  2. Fastjson <= 1.2.66 反序列化 (暂无编号)
  3. GoCD Business Continuity 任意文件读取 (CVE-2021-43287)---(查看漏洞复现)
  4. JBoss 未授权访问 (暂无编号)---(查看漏洞复现)
  5. Jenkins 未授权访问 (暂无编号)---(查看漏洞复现)
  6. Joomla 3.7 Core com_fields组件SQL注入 (CVE-2017-8917)---(查看漏洞复现)
  7. Joomla 4 未授权访问 (CVE-2023-23752)---(查看漏洞复现)
  8. Weblogic LDAP 远程代码执行 (CVE-2021-2109)---(查看漏洞复现)

  • new POC:
  1. Fastjson <= 1.2.62 deSerialization (暂无编号)
  2. Fastjson <= 1.2.66 deSerialization (暂无编号)
  3. GoCD Business Continuity FileRead (CVE-2021-43287)---(Demo)
  4. JBoss unAuthorized (暂无编号)---(Demo)
  5. Jenkins unAuthorized (暂无编号)---(Demo)
  6. Joomla 3.7 Core com_fields SQLinject (CVE-2017-8917)---(Demo)
  7. Joomla 4 unAuthorized (CVE-2023-23752)---(Demo)
  8. Weblogic LDAP Remote code execution (CVE-2021-2109)---(Demo)