尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| SAP_SE | SAP NetWeaver (Visual Composer development server) | VCFRAMEWORK 7.50 | - |
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-31324.yaml | POC详情 |
| 2 | SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system. | https://github.com/rxerium/CVE-2025-31324 | POC详情 |
| 3 | CVE-2025-31324, SAP Exploit | https://github.com/redrays-io/CVE-2025-31324 | POC详情 |
| 4 | None | https://github.com/Onapsis/Onapsis_CVE-2025-31324_Scanner_Tools | POC详情 |
| 5 | SAP PoC para CVE-2025-31324 | https://github.com/moften/CVE-2025-31324 | POC详情 |
| 6 | Nuclei template for cve-2025-31324 (SAP) | https://github.com/moften/CVE-2025-31324-NUCLEI | POC详情 |
| 7 | SAP NetWeaver Unauthenticated Remote Code Execution | https://github.com/Alizngnc/SAP-CVE-2025-31324 | POC详情 |
| 8 | Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader | https://github.com/ODST-Forge/CVE-2025-31324_PoC | POC详情 |
| 9 | Proof-of-Concept for CVE-2025-31324: Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader | https://github.com/abrewer251/CVE-2025-31324_PoC_SAP | POC详情 |
| 10 | Unauthenticated upload in SAP NetWeaver Visual Composer Metadata Uploader | https://github.com/Pengrey/CVE-2025-31324 | POC详情 |
| 11 | Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324 | https://github.com/BlueOWL-overlord/Burp_CVE-2025-31324 | POC详情 |
| 12 | A totally unauthenticated file-upload endpoint in Visual Composer lets anyone drop arbitrary files (e.g., a JSP web-shell) onto the server. | https://github.com/nullcult/CVE-2025-31324-File-Upload | POC详情 |
| 13 | 🔍 A simple Bash script to detect malicious JSP webshells, including those used in exploits of SAP NetWeaver CVE-2025-31324. | https://github.com/respondiq/jsp-webshell-scanner | POC详情 |
| 14 | A Python-based security scanner for identifying the CVE-2025-31324 vulnerability in SAP Visual Composer systems, and detecting known Indicators of Compromise (IOCs) such as malicious .jsp. | https://github.com/JonathanStross/CVE-2025-31324 | POC详情 |
| 15 | CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool | https://github.com/Onapsis/Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment | POC详情 |
| 16 | Research Purposes only | https://github.com/rf-peixoto/sap_netweaver_cve-2025-31324- | POC详情 |
| 17 | None | https://github.com/NULLTRACE0X/CVE-2025-31324 | POC详情 |
| 18 | sap-netweaver-cve-2025-31324-check | https://github.com/nairuzabulhul/nuclei-template-cve-2025-31324-check | POC详情 |
| 19 | SAP NetWeaver Visual Composer Metadata Uploader <= 7.50 CVE-2025-31324 PoC | https://github.com/sug4r-wr41th/CVE-2025-31324 | POC详情 |
| 20 | sap netweaver 0day poc by shinyhunters (scattered lapsus$ hunters) affecting all 7.x CVE-2025-31324 | https://github.com/antichainalysis/sap-netweaver-0day-CVE-2025-31324 | POC详情 |
| 21 | None | https://github.com/harshitvarma05/CVE-2025-31324-Exploits | POC详情 |
| 22 | Proof-of-Concept 0day for SAP NetWeaver created by ShinyHunters | https://github.com/aristois913/CVE-2025-31324 | POC详情 |
未找到公开 POC。
登录以生成 AI POC暂无评论