Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-22855 PoC — Kardex Control Center 代码注入漏洞

Source
Associated Vulnerability
Title:Kardex Control Center 代码注入漏洞 (CVE-2023-22855)
Description:Kardex Control Center是Kardex公司的物流控制和仓库管理系统。 Kardex Control Center 5.7.12+0-a203c2a213-master 版本存在安全漏洞,该漏洞源于用户可控制的路径在没有适当清理的情况下被传递给path-concatenation方法,这导致包含本地文件以及 SMB 共享上的远程文件的可能性,如果提供一个扩展名为 .t4 的文件,它将使用 .NET 模板引擎 mono/t4 调用,可以执行代码。
Description
Security Vulnerability - Kardex Mlog MCC
Readme
# CVE-2023-22855

This vulnerability was discovered and disclosed by Patrick Hener and myself. This repository will hold the advisory and the link to the exploit.

This repository is only for educational purposes.

# Links

- Vendor Website: [https://www.kardex.com/en/mlog-control-center](https://www.kardex.com/en/mlog-control-center)
- Exploit on Exploit-DB: [https://www.exploit-db.com/exploits/51239](https://www.exploit-db.com/exploits/51239)
- Exploit on Patrick Hener's Github [https://github.com/patrickhener/CVE-2023-22855/tree/main/exploit](https://github.com/patrickhener/CVE-2023-22855/tree/main/exploit)
- Blog Post Advisory: [https://hesec.de/posts/CVE-2023-22855](https://hesec.de/posts/cve-2023-22855)
- Blog Post Thinking Objects: [https://to.com/blog/advisory-kardex-mlog-CVE-2023-22855](https://to.com/blog/advisory-kardex-mlog-CVE-2023-22855)
- Mitre: [https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-22855](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-22855)
- NVD Entry: [https://nvd.nist.gov/vuln/detail/CVE-2023-22855](https://nvd.nist.gov/vuln/detail/CVE-2023-22855)
File Snapshot

[4.0K] /data/pocs/432154c5b4e5d35efd7598cfa1de35dec1bdc20c ├── [6.0K] advisory.md └── [1.1K] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.