F5 BIG-IP是美国F5公司的一款集成了网络流量管理、应用程序安全管理、负载均衡等功能的应用交付平台。 F5 BIG-IP中存在路径遍历漏洞。攻击者可利用该漏洞执行任意的系统命令、创建或删除文件,关闭服务/执行任意的Java代码,可能完全入侵系统。以下产品及版本受到影响:F5 BIG-IP 15.1.0版本,15.0.0版本,14.1.0版本至14.1.2版本,13.1.0版本至13.1.3版本,12.1.0版本至12.1.5版本,11.6.1版本至11.6.5版本。
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| - | BIG-IP | 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, 11.6.1-11.6.5.1 | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | CVE-2020-5902 | https://github.com/dwisiswant0/CVE-2020-5902 | POC详情 |
| 2 | Automated script for F5 BIG-IP scanner (CVE-2020-5902) using hosts retrieved from Shodan API. | https://github.com/aqhmal/CVE-2020-5902-Scanner | POC详情 |
| 3 | CVE-2020-5902 BIG-IP | https://github.com/jas502n/CVE-2020-5902 | POC详情 |
| 4 | POC code for checking for this vulnerability. Since the code has been released, I decided to release this one as well. Patch Immediately! | https://github.com/ar0dd/CVE-2020-5902 | POC详情 |
| 5 | Proof of concept for CVE-2020-5902 | https://github.com/yassineaboukir/CVE-2020-5902 | POC详情 |
| 6 | None | https://github.com/rwincey/CVE-2020-5902-NSE | POC详情 |
| 7 | Proof of Concept for CVE-2020-5902 | https://github.com/un4gi/CVE-2020-5902 | POC详情 |
| 8 | None | https://github.com/nsflabs/CVE-2020-5902 | POC详情 |
| 9 | exploit code for F5-Big-IP (CVE-2020-5902) | https://github.com/yasserjanah/CVE-2020-5902 | POC详情 |
| 10 | BIG-IP F5 Remote Code Execution | https://github.com/JSec1337/RCE-CVE-2020-5902 | POC详情 |
| 11 | Python script to exploit F5 Big-IP CVE-2020-5902 | https://github.com/dunderhay/CVE-2020-5902 | POC详情 |
| 12 | cve-2020-5902 POC exploit | https://github.com/r0ttenbeef/cve-2020-5902 | POC详情 |
| 13 | None | https://github.com/sv3nbeast/CVE-2020-5902_RCE | POC详情 |
| 14 | CVE-2020-5902 scanner | https://github.com/cybersecurityworks553/scanner-CVE-2020-5902 | POC详情 |
| 15 | 批量扫描CVE-2020-5902,远程代码执行,已测试 | https://github.com/lijiaxing1997/CVE-2020-5902-POC-EXP | POC详情 |
| 16 | dummy poc | https://github.com/qlkwej/poc-CVE-2020-5902 | POC详情 |
| 17 | None | https://github.com/Zinkuth/F5-BIG-IP-CVE-2020-5902 | POC详情 |
| 18 | Python script to check CVE-2020-5902 (F5 BIG-IP devices). | https://github.com/0xAbdullah/CVE-2020-5902 | POC详情 |
| 19 | CVE-2020-5902 | https://github.com/jinnywc/CVE-2020-5902 | POC详情 |
| 20 | Patch F5 appliance CVE-2020-5902 | https://github.com/GoodiesHQ/F5-Patch | POC详情 |
| 21 | F5 BIG-IP Scanner (CVE-2020-5902) | https://github.com/jiansiting/CVE-2020-5902 | POC详情 |
| 22 | Fix CVE-2020-5902 | https://github.com/wdlid/CVE-2020-5902-fix | POC详情 |
| 23 | None | https://github.com/Any3ite/CVE-2020-5902-F5BIG | POC详情 |
| 24 | None | https://github.com/k3nundrum/CVE-2020-5902 | POC详情 |
| 25 | Scan from a given list for F5 BIG-IP and check for CVE-2020-5902 | https://github.com/inho28/CVE-2020-5902-F5-BIGIP | POC详情 |
| 26 | F5 mass scanner and CVE-2020-5902 checker | https://github.com/cristiano-corrado/f5_scanner | POC详情 |
| 27 | POC | https://github.com/ajdumanhug/CVE-2020-5902 | POC详情 |
| 28 | F5 BIG-IP 任意文件读取+远程命令执行RCE | https://github.com/zhzyker/CVE-2020-5902 | POC详情 |
| 29 | It is a small script to fetch out the subdomains/ip vulnerable to CVE-2020-5902 written in bash | https://github.com/GovindPalakkal/EvilRip | POC详情 |
| 30 | None | https://github.com/dnerzker/CVE-2020-5902 | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2020-7688 | 8.4 HIGH | mversion 操作系统命令注入漏洞 |
| CVE-2020-7689 | 5.9 MEDIUM | bcrypt 加密问题漏洞 |
| CVE-2020-12603 | Envoy 资源管理错误漏洞 | |
| CVE-2020-15471 | Ntop nDPI 缓冲区错误漏洞 | |
| CVE-2020-15478 | Journal theme 信息泄露漏洞 | |
| CVE-2020-15472 | Ntop nDPI 缓冲区错误漏洞 | |
| CVE-2020-15475 | Ntop nDPI 资源管理错误漏洞 | |
| CVE-2020-15476 | Ntop nDPI 缓冲区错误漏洞 | |
| CVE-2020-15470 | ffjpeg 缓冲区错误漏洞 | |
| CVE-2020-15468 | Persian VIP Download Script SQL注入漏洞 | |
| CVE-2020-15474 | Ntop nDPI 缓冲区错误漏洞 | |
| CVE-2017-1712 | HCL Technologies Domino 加密问题漏洞 | |
| CVE-2017-1659 | HCL Technologies Notes 跨站脚本漏洞 | |
| CVE-2020-5900 | F5 NGINX Controller 跨站请求伪造漏洞 | |
| CVE-2020-5899 | F5 NGINX Controller 授权问题漏洞 | |
| CVE-2020-5901 | F5 NGINX Controller 跨站脚本漏洞 | |
| CVE-2020-13380 | Open Solutions for Education openSIS SQL注入漏洞 | |
| CVE-2020-13381 | Open Solutions for Education openSIS SQL注入漏洞 | |
| CVE-2020-8663 | Envoy 资源管理错误漏洞 | |
| CVE-2020-13382 | Open Solutions for Education openSIS 访问控制错误漏洞 |
显示前 20 条,共 43 条。 查看全部 → →
暂无评论