XORUX LPAR2RRD是捷克XORUX公司的一个服务器性能监控平台。 XORUX LPAR2RRD存在安全漏洞,该漏洞源于目录遍历和文件上传功能结合,可能导致远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | A C‑based proof‑of‑concept exploit for CVE‑2025‑54769, automating the creation and upload of a malicious Perl CGI script to LPAR2RRD’s upgrade endpoint, leveraging directory traversal for remote code execution. | https://github.com/byteReaper77/CVE-2025-54769 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2025-54767 | KL-001-2025-014: Xorux LPAR2RRD Read Only User Denial of Service | |
| CVE-2025-54765 | KL-001-2025-013: Xorux XorMon-NG Web Application Privilege Escalation to Administrator | |
| CVE-2025-54768 | KL-001-2025-015: Xorux LPAR2RRD Read Only User Log Download Exposing Sensitive Information | |
| CVE-2025-54766 | KL-001-2025-012: Xorux XorMon-NG Read Only User Export Device Configuration Exposing Sensi |
No comments yet