Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-31704 PoC — VMware vRealize Log Insight 安全漏洞

Source
Associated Vulnerability
Title:VMware vRealize Log Insight 安全漏洞 (CVE-2022-31704)
Description:VMware vRealize Log Insight是美国威睿(VMware)公司的一套集中式日志管理解决方案。该产品支持日志整理和日志分析等功能。 VMware vRealize Log Insight 存在安全漏洞。未经身份验证的攻击者可以远程将代码注入受影响设备的敏感文件,从而导致远程代码执行。
Description
The vRealize Log Insight contains a broken access control vulnerability. An unauthenticated malicious actor can remotely inject code into sensitive files of an impacted appliance which can result in remote code execution.
File Snapshot

id: CVE-2022-31704 info: name: VMware vRealize Log Insight - Improper Access Control to RCE aut ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.