Metabase是美国Metabase公司的一个开源数据分析平台。 Metabase 0.46.6.1之前版本和Metabase Enterprise 1.46.6.1之前版本存在安全漏洞,该漏洞源于允许攻击者以运行该服务的权限在服务器上执行任意命令。
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | None | https://github.com/adriyansyah-mf/CVE-2023-38646--Metabase- | POC详情 |
| 2 | For educational purposes only | https://github.com/Pumpkin-Garden/POC_Metabase_CVE-2023-38646 | POC详情 |
| 3 | Metabase Pre-auth RCE (CVE-2023-38646)!! | https://github.com/0xrobiul/CVE-2023-38646 | POC详情 |
| 4 | Remote Code Execution on Metabase CVE-2023-38646 | https://github.com/Chocapikk/CVE-2023-38646 | POC详情 |
| 5 | None | https://github.com/Xuxfff/CVE-2023-38646-Poc | POC详情 |
| 6 | POC for CVE-2023-38646 | https://github.com/securezeron/CVE-2023-38646 | POC详情 |
| 7 | Tools to exploit metabase CVE-2023-38646 | https://github.com/lazysec0x21/CVE-2023-38646 | POC详情 |
| 8 | Proof of Concept for CVE-2023-38646 | https://github.com/Zenmovie/CVE-2023-38646 | POC详情 |
| 9 | Metabase Pre-auth RCE | https://github.com/shamo0/CVE-2023-38646-PoC | POC详情 |
| 10 | CVE-2023-38646-POC | https://github.com/fidjiw/CVE-2023-38646-POC | POC详情 |
| 11 | None | https://github.com/Any3ite/cve-2023-38646-metabase-ReverseShell | POC详情 |
| 12 | Automatic Tools For Metabase Exploit Known As CVE-2023-38646 | https://github.com/robotmikhro/CVE-2023-38646 | POC详情 |
| 13 | Metabase Pre-auth RCE (CVE-2023-38646) | https://github.com/kh4sh3i/CVE-2023-38646 | POC详情 |
| 14 | CVE-2023-38646 (Pre-Auth RCE in Metabase) | https://github.com/joaoviictorti/CVE-2023-38646 | POC详情 |
| 15 | None | https://github.com/yxl2001/CVE-2023-38646 | POC详情 |
| 16 | CVE-2023-38646 Pre-Auth RCE in Metabase | https://github.com/alexandre-pecorilla/CVE-2023-38646 | POC详情 |
| 17 | Metabase H2 远程代码执行漏洞(CVE-2023-38646) | https://github.com/CN016/Metabase-H2-CVE-2023-38646- | POC详情 |
| 18 | CVE-2023-38646 Metabase RCE | https://github.com/Boogipop/MetabaseRceTools | POC详情 |
| 19 | CVE-2023-38646 Metabase 0.46.6 exploit | https://github.com/SUT0L/CVE-2023-38646 | POC详情 |
| 20 | CVE-2023-38646 Unauthenticated RCE vulnerability in Metabase | https://github.com/nickswink/CVE-2023-38646 | POC详情 |
| 21 | None | https://github.com/passwa11/CVE-2023-38646 | POC详情 |
| 22 | None | https://github.com/threatHNTR/CVE-2023-38646 | POC详情 |
| 23 | None | https://github.com/asepsaepdin/CVE-2023-38646 | POC详情 |
| 24 | Exploit script for Pre-Auth RCE in Metabase (CVE-2023-38646) | https://github.com/Pyr0sec/CVE-2023-38646 | POC详情 |
| 25 | Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary commands on the server, at the server's privilege level. Authentication is not required for exploitation. The other fixed versions are 0.45.4.1, 1.45.4.1, 0.44.7.1, 1.44.7.1, 0.43.7.2, and 1.43.7.2. | https://github.com/birdm4nw/CVE-2023-38646 | POC详情 |
| 26 | RCE Exploit for CVE-2023-38646 | https://github.com/AnvithLobo/CVE-2023-38646 | POC详情 |
| 27 | Python script to exploit CVE-2023-38646 Metabase Pre-Auth RCE via SQL injection | https://github.com/Red4mber/CVE-2023-38646 | POC详情 |
| 28 | Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary commands on the server, at the server's privilege level. Authentication is not required for exploitation. The other fixed versions are 0.45.4.1, 1.45.4.1, 0.44.7.1, 1.44.7.1, 0.43.7.2, and 1.43.7.2. | https://github.com/junnythemarksman/CVE-2023-38646 | POC详情 |
| 29 | A crappy exploit script written for CVE-2023-38646. It works about as well as peace treaties between Israel and Hamas. | https://github.com/Itrekr/CVE-2023-38646-Crapsploit | POC详情 |
| 30 | Metabase Pre-Auth RCE POC | https://github.com/Mrunalkaran/CVE-2023-38646 | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2023-3811 | 6.3 MEDIUM | Hospital Management System SQL注入漏洞 |
| CVE-2023-3810 | 6.3 MEDIUM | Hospital Management System SQL注入漏洞 |
| CVE-2023-3809 | 6.3 MEDIUM | Hospital Management System SQL注入漏洞 |
| CVE-2023-3808 | 6.3 MEDIUM | Hospital Management System SQL注入漏洞 |
| CVE-2023-3603 | 3.1 LOW | libssh 安全漏洞 |
| CVE-2023-38632 | async-sockets-cpp 缓冲区错误漏洞 | |
| CVE-2023-37742 | WebBoss.io 跨站脚本漏洞 | |
| CVE-2023-36339 | WebBoss.io 安全漏洞 | |
| CVE-2021-35391 | Deskpro 代码问题漏洞 |
暂无评论