Committed to the study of vulnerability principles and creating a collection of docker vulnerability environments
CVE-XXXX-XXXX
Env 存放漏洞复现环境
Exp 存放漏洞利用工具
img 存放相关图片
Vedio 存放漏洞利用演示视频
readme.md 漏洞复现过程的简要说明
- CVE-2020-13957 Apache Solr 未授权上传漏洞
sudo apt-get remove docker docker-engine docker.io
sudo apt-get update
sudo apt-get install apt-transport-https ca-certificates curl gnupg lsb-release
curl -fsSL https://download.docker.com/linux/ubuntu/gpg | sudo gpg --dearmor -o /usr/share/keyrings/docker-archive-keyring.gpg
echo \
"deb [arch=amd64 signed-by=/usr/share/keyrings/docker-archive-keyring.gpg] https://mirrors.aliyun.com/docker-ce/linux/ubuntu \
$(lsb_release -cs) stable" | sudo tee /etc/apt/sources.list.d/docker.list > /dev/null
sudo apt-get update
sudo apt-get install docker-ce docker-ce-cli containerd.io
service docker start
apt-get install python3-pip
pip install docker-compose
git clone https://github.com/redsecteam/exploit-collections.git
cd ./CVE-XXXX-XXXX/Env/
docker-compose up -d
