Git是Git开源的一套免费、开源的分布式版本控制系统。 Git存在安全漏洞,该漏洞源于在处理配置值时尾随回车符的处理不当,可能使子模块被错误检出到由符号链接指向的钩子目录,意外执行其中的可执行脚本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Breaking git with a carriage return and cloning RCE | https://github.com/acheong08/CVE-2025-48384 | POC Details |
| 2 | for CVE-2025-48384 test | https://github.com/fishyyh/CVE-2025-48384 | POC Details |
| 3 | None | https://github.com/kallydev/cve-2025-48384-hook | POC Details |
| 4 | None | https://github.com/fishyyh/CVE-2025-48384-POC | POC Details |
| 5 | None | https://github.com/liamg/CVE-2025-48384-submodule | POC Details |
| 6 | PoC for CVE-2025-48384 | https://github.com/liamg/CVE-2025-48384 | POC Details |
| 7 | None | https://github.com/ppd520/CVE-2025-48384 | POC Details |
| 8 | 漏洞测试 | https://github.com/NigelX/CVE-2025-48384 | POC Details |
| 9 | None | https://github.com/greatyy/CVE-2025-48384-p | POC Details |
| 10 | CVE-2025-48384 | https://github.com/testdjshan/CVE-2025-48384 | POC Details |
| 11 | None | https://github.com/altm4n/cve-2025-48384 | POC Details |
| 12 | None | https://github.com/altm4n/cve-2025-48384-hub | POC Details |
| 13 | None | https://github.com/p1026/CVE-2025-48384 | POC Details |
| 14 | PoC dockerfile image for CVE-2025-48384 | https://github.com/vinieger/vinieger-CVE-2025-48384-Dockerfile | POC Details |
| 15 | None | https://github.com/ECHO6789/CVE-2025-48384-submodule | POC Details |
| 16 | None | https://github.com/nguyentranbaotran/cve-2025-48384-poc | POC Details |
| 17 | None | https://github.com/admin-ping/CVE-2025-48384-RCE | POC Details |
| 18 | None | https://github.com/simplyfurious/CVE-2025-48384-submodule_test | POC Details |
| 19 | None | https://github.com/Anezatraa/CVE-2025-48384-submodule | POC Details |
| 20 | CVE-2025-48384 PoC | https://github.com/IK-20211125/CVE-2025-48384 | POC Details |
| 21 | None | https://github.com/elprogramadorgt/CVE-2025-48384 | POC Details |
| 22 | None | https://github.com/rtefx/CVE-2025-48384 | POC Details |
| 23 | test for CVE-2025-48384 | https://github.com/f1shh/CVE-2025-48384 | POC Details |
| 24 | PoC for CVE-2025-48384 | https://github.com/fluoworite/CVE-2025-48384 | POC Details |
| 25 | None | https://github.com/fluoworite/CVE-2025-48384-sub | POC Details |
| 26 | None | https://github.com/beishanxueyuan/CVE-2025-48384 | POC Details |
| 27 | None | https://github.com/beishanxueyuan/CVE-2025-48384-test | POC Details |
| 28 | None | https://github.com/jideasn/cve-2025-48384 | POC Details |
| 29 | None | https://github.com/testtianmaaaa/CVE-2025-48384 | POC Details |
| 30 | None | https://github.com/replicatorbot/CVE-2025-48384 | POC Details |
| CVE-2025-48386 | 6.3 MEDIUM | Git allows a buffer overflow in 'wincred' credential helper |
| CVE-2025-48385 | Git alllows arbitrary file writes via bundle-uri parameter injection |
No comments yet