Skip to content

A vulnerability scanner that detects CVE-2021-37580 vulnerabilities.

Notifications You must be signed in to change notification settings

Osyanina/westone-CVE-2021-37580-scanner

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 

Repository files navigation

westone-CVE-2021-37580-scanner

Apache Shenyu is an extensible, high-performance and responsive API gateway solution applied to all micro service scenarios.
An authentication bypass vulnerability exists in Apache Shenyu admin. The improper use of JWT in Shenyu admin bootstrap allows an attacker to bypass authentication, and the attacker can directly enter the system background through this vulnerability.

Installation & Usage

git clone https://github.com/Osyanina/westone-CVE-2021-37580-scanner.git
cd westone-CVE-2021-37580-scanner
cmd CVE-2021-37580.exe

Repair suggestions

Apache ShenYu 2.3.0
Apache ShenYu 2.4.0

About

A vulnerability scanner that detects CVE-2021-37580 vulnerabilities.

Resources

Stars

Watchers

Forks

Packages

No packages published