目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2023-35885 PoC — CloudPanel 安全漏洞

来源
关联漏洞
标题: CloudPanel 安全漏洞 (CVE-2023-35885)
Description:CloudPanel是CloudPanel开源的一款免费软件。用于配置和管理服务器。 CloudPanel 2.3.1之前版本存在安全漏洞,该漏洞源于具有不安全的文件管理器cookie身份验证。
Description
CloudPanel 2 Remote Code Execution Exploit
介绍
# CloudPanel 2 Exploitation Tool (CVE-2023-35885)

This tool targets a vulnerability in CloudPanel 2 versions prior to 2.3.1. The flaw resides in the insecure file-manager cookie authentication, which can be exploited to achieve Remote Code Execution (RCE) with root privileges.

## Vulnerability Details

For comprehensive details regarding this vulnerability, please refer to the official CVE listing:
[CVE-2023-35885](https://nvd.nist.gov/vuln/detail/CVE-2023-35885)

Description from NVD:
> CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication leading to Remote Code Execution as root.

## Usage

1. **Single URL Mode**: 
    ```
    python3.10 exploit.py -u https://TARGET_URL:PORT
    ```
    This mode will check the vulnerability on a single URL and if successful, will drop you into an interactive shell.

2. **File Mode**:
    ```
    python3.10 exploit.py -f file_with_urls.txt
    ```
    This mode allows you to check multiple URLs at once. Each line in the file should contain one URL.

3. **Output Vulnerable URLs to File**:
    ```
    python3.10 exploit.py -f file_with_urls.txt -o output.txt
    ```
    Use the `-o` flag to write vulnerable URLs to an output file.

4. **Threads**:
    ```
    python3.10 exploit.py -f file_with_urls.txt -t 20
    ```
    Adjust the number of threads for concurrent testing using the `-t` flag. The default is 10.

## Disclaimer

This tool is intended for educational and research purposes only. Do not use it against any system without explicit permission. The author or any associated parties are not responsible for any misuse or damage resulting from the use of this tool.

文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →