Skip to content

sonnet-tools/nut-poc

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1 Commit
 
 
 
 
 
 
 
 
 
 

Repository files navigation

nut-poc

Replica of networkupstools/nut CI workflow demonstrating fork checkout RCE via pull_request_target.

Vulnerability: The 01-make-dist.yml workflow triggers on pull_request_target and checks out the fork's head.sha directly, then executes fork-controlled scripts: autogen.sh, configure, make dist.

Impact: GITHUB_TOKEN with contents:write, pull-requests:write, issues:write, checks:write.

Used for authorized security research only.

About

PoC replica for networkupstools/nut fork checkout RCE (security research)

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors