尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Apache Software Foundation | Apache Druid | 0.20.0 and earlier ~ 0.20.0 | - |
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | Apache Druid 远程代码执行;检测脚本 | https://github.com/yaunsky/cve-2021-25646 | POC详情 |
| 2 | None | https://github.com/lp008/CVE-2021-25646 | POC详情 |
| 3 | CSharp CVE-2021-25646-GUI | https://github.com/Ormicron/CVE-2021-25646-GUI | POC详情 |
| 4 | None | https://github.com/Vulnmachines/Apache-Druid-CVE-2021-25646 | POC详情 |
| 5 | Alibaba-Nacos-Unauthorized/ApacheDruid-RCE_CVE-2021-25646/MS-Exchange-SSRF-CVE-2021-26885/Oracle-WebLogic-CVE-2021-2109_RCE/RG-CNVD-2021-14536/RJ-SSL-VPN-UltraVires/Redis-Unauthorized-RCE/TDOA-V11.7-GetOnlineCookie/VMware-vCenter-GetAnyFile/yongyou-GRP-U8-XXE/Oracle-WebLogic-CVE-2020-14883/Oracle-WebLogic-CVE-2020-14882/Apache-Solr-GetAnyFile/F5-BIG-IP-CVE-2021-22986/Sonicwall-SSL-VPN-RCE/GitLab-Graphql-CNVD-2021-14193/D-Link-DCS-CVE-2020-25078/WLAN-AP-WEA453e-RCE/360TianQing-Unauthorized/360TianQing-SQLinjection/FanWeiOA-V8-SQLinjection/QiZhiBaoLeiJi-AnyUserLogin/QiAnXin-WangKangFirewall-RCE/金山-V8-终端安全系统/NCCloud-SQLinjection/ShowDoc-RCE | https://github.com/1n7erface/PocList | POC详情 |
| 6 | CVE-2021-25646 Apache Druid 远程代码执行漏洞 Wker脚本 | https://github.com/givemefivw/CVE-2021-25646 | POC详情 |
| 7 | Apache Druid remote code execution vulnerability - Apache Druid 远程代码执行漏洞利用 CVE-2021-25646 | https://github.com/j2ekim/CVE-2021-25646 | POC详情 |
| 8 | CVE-2021-25646 Apache Druid 远程代码执行 漏洞检测和利用工具 | https://github.com/luobai8/CVE-2021-25646-exp | POC详情 |
| 9 | Apache Druid 远程代码执行复现(CVE-2021-25646) | https://github.com/gps1949/CVE-2021-25646 | POC详情 |
| 10 | Apache Druid is susceptible to remote code execution because by default it lacks authorization and authentication. Attackers can send specially crafted requests to execute arbitrary code with the privileges of processes on the Druid server. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-25646.yaml | POC详情 |
| 11 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E6%95%B0%E6%8D%AE%E5%BA%93%E6%BC%8F%E6%B4%9E/Apache%20Druid%20%E8%BF%9C%E7%A8%8B%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E%20CVE-2021-25646.md | POC详情 |
| 12 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E6%95%B0%E6%8D%AE%E5%BA%93%E6%BC%8F%E6%B4%9E/Apache%20Druid%20%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E%20CVE-2021-25646.md | POC详情 |
| 13 | https://github.com/vulhub/vulhub/blob/master/apache-druid/CVE-2021-25646/README.md | POC详情 | |
| 14 | CVE-2021-25646 Apache Druid 远程代码执行 漏洞检测和利用工具 | https://github.com/k7pro/CVE-2021-25646-exp | POC详情 |
| 15 | A proof-of-concept for the CVE-2021-25646, which allows for Command Injection | https://github.com/tiemio/RCE-PoC-CVE-2021-25646 | POC详情 |
| 16 | Exploit for Apache Druid Embedded Javascript Remote Code Execution (CVE-2021-25646), Python. | https://github.com/ShadowLance2/Apache-Druid-CVE-2021-25646-Exploit | POC详情 |
未找到公开 POC。
登录以生成 AI POC暂无评论