Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2018-9206 PoC — Blueimp jQuery-File-Upload 安全漏洞

Source
Associated Vulnerability
Title: Blueimp jQuery-File-Upload 安全漏洞 (CVE-2018-9206)
Description:Unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0
Description
A Python PoC for CVE-2018-9206
Readme
# PoC for CVE-2018-9206

## About
Based on the [original Poc](https://github.com/lcashdol/Exploits/tree/master/CVE-2018-9206).

## Usage

```
usage: run.py [-h] [-p PREFIX] [-u USER_AGENT] host

CVE-2018-9206 PoC

positional arguments:
  host                  the host to check

optional arguments:
  -h, --help            show this help message and exit
  -p PREFIX, --prefix PREFIX
                        The prefix for the path
  -u USER_AGENT, --user-agent USER_AGENT
                        The user agent to send the requests with
```

## Authors
[Larry Cashdollar](https://twitter.com/_larry0)

[Daniel Abeles](https://twitter.com/Daniel_Abeles)
File Snapshot

Log in to view the POC file snapshot cached by Shenlong Bot

Log in to view
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →