Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-28502 PoC — Dan DeFelippi node-XMLHttpRequest 代码注入漏洞

Source
Associated Vulnerability
Title:Dan DeFelippi node-XMLHttpRequest 代码注入漏洞 (CVE-2020-28502)
Description:Dan DeFelippi node-XMLHttpRequest是 (Dan DeFelippi)开源的一个应用软件。用于模拟浏览器XMLHttpRequest对象。 node-XMLHttpRequest before 1.7.0 存在代码注入漏洞,攻击者可利用该漏洞导致任意代码注入并运行。
File Snapshot

[4.0K] /data/pocs/0c2246cb2027035fa2a5cb5451ad0b96af8d06fe ├── [ 521] app.js ├── [ 98] Dockerfile ├── [4.0K] html │   └── [ 440] index.html ├── [ 320] package.json └── [ 31K] package-lock.json 1 directory, 5 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.