Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-42820 PoC — Jumpserver 信息泄露漏洞

Source
Associated Vulnerability
Title:Jumpserver 信息泄露漏洞 (CVE-2023-42820)
Description:Jumpserver是中国杭州飞致云信息科技有限公司的一款开源堡垒机。 JumpServer 存在信息泄露漏洞,该漏洞源于将随机数种子暴露给 API 造成的,可能会允许重放随机生成的验证码,从而导致密码重置。
File Snapshot

# JumpServer 随机数种子泄露导致账户劫持漏洞 CVE-2023-42820 ## 漏洞描述 JumpServer是一个开源堡垒机系统。在其3.6.4及以下版本中,存在一处账户接管漏洞。 ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.