Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-24656 PoC — Maltego 代码问题漏洞

Source
Associated Vulnerability
Title:Maltego 代码问题漏洞 (CVE-2020-24656)
Description:Maltego before 4.2.12存在代码问题漏洞,该漏洞源于网络系统或产品的代码开发过程中存在设计或实现不当的问题。
Description
Here you can find my relation about the project I made for the Internet Security course. Because I written it in Latex, you can also find the Latex source files. The project talks about Maltego vulnerability CVE-2020-24656, which allows an attacker to exfiltrate data via an XXE injection attack.
Readme
# Internet-Security-Project
Here you can find my relation about the project I made for the Internet Security course. The relation is in Italian. Because I written it in Latex, you can also find the Latex source files. The project talks about Maltego vulnerability CVE-2020-24656, which allows an attacker to exfiltrate data via an XXE injection attack.
File Snapshot

[4.0K] /data/pocs/6b55dac8618e05547edf6cbcd37a01cae9447f6e ├── [3.5K] chapter01.tex ├── [1.8K] chapter02.tex ├── [ 253] chapter03.tex ├── [8.0K] chapter04.tex ├── [1.1K] chapter05.tex ├── [ 458] chapter06.tex ├── [ 353] README.md ├── [667K] Relazione_progetto_Internet_Security.pdf ├── [1.2K] relazione.tex ├── [6.9K] Screenshot_1.png ├── [5.7K] Screenshot_2.png ├── [8.3K] Screenshot_3.png ├── [3.8K] Screenshot_4.png ├── [ 37K] Screenshot Beeceptor.png ├── [ 99K] Screenshot cartelle interne file MTGL.png ├── [ 70K] Screenshot file entità con payload.png ├── [ 14K] Screenshot file lol.dtd.png ├── [ 51K] Screenshot-file-maltego.Alias.entity.png ├── [ 90K] Screenshot-file-MTGL-Maltego.png ├── [ 68K] Screenshot unzip file MTGL.png ├── [ 69K] Screenshot zip file MTGL.png └── [ 48K] UniCT-Logo.jpg 0 directories, 22 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.