Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-3452 PoC — Cisco Adaptive Security Appliances Software 路径遍历漏洞

Source
Associated Vulnerability
Title:Cisco Adaptive Security Appliances Software 路径遍历漏洞 (CVE-2020-3452)
Description:Cisco Adaptive Security Appliances Software(ASA Software)是美国思科(Cisco)公司的一套防火墙和网络安全平台。该平台提供了对数据和网络资源的高度安全的访问等功能。 Cisco Adaptive Security Appliances Software和FTD Software中存在路径遍历漏洞,该漏洞源于受影响设备没有正确验证HTTP请求中的URL。远程攻击者可通过将包含目录遍历字符序列的特制HTTP请求发送到受影响的设备利用该漏洞在目标设备上查
Description
CVE-2020-3452
Readme

<details open>
<summary>CVE-2020-3452</summary>
<br>
A [WIP] python script to exploit the directory traversal vulnerability in Cisco Adaptive Security Appliance (ASA)and Cisco Firepower Threat Defense (FTD) appliance web interfaces. 
Please note directories will be created for specified targets and any downloaded files will be downloaded to their respective directory. Additionaly, logging is provided. 


</details>

File Snapshot

[4.0K] /data/pocs/68a1bc5cd2716d38fd5ca05445837f2eefcb6242 ├── [3.5K] CVE-2020-3452.py ├── [ 18K] LICENSE ├── [ 421] README.md └── [ 66] requirements.txt 0 directories, 4 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.