目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2021-21974 PoC — 威睿 VMware ESXi 缓冲区错误漏洞

来源
关联漏洞
标题: 威睿 VMware ESXi 缓冲区错误漏洞 (CVE-2021-21974)
Description:Vmware VMware ESXi是美国威睿(Vmware)公司的一套可直接安装在物理服务器上的服务器虚拟化平台。 ESXi 存在安全漏洞,该漏洞源于同一网段的恶意行为者可以访问端口427,导致远程代码执行。以下产品及版本受到影响:7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG。
Description
ESXi EZ - A custom scanner that takes list of IPs either in JSON, CSV or individually  and checks for infection CVE-2021-21974
介绍
# ESXi_ransomware_scanner
A program that scans IP addresses for signs of ESXi compromise by grabbing the ransom note from an html page and comparing the strings.

## Requirements
- python 3.x
- requests
- BeautifulSoup
- tqdm
- colorama

## Installation
Use the package manager pip to install the required packages.

```python
    pip install requests
    pip install bs4
    pip install tqdm
    pip install colorama
```
## Usage
Run the program with Python 3:

```python
python ESXi_EZ_Scanner.py
```
## Menu
The program will display the following menu:

## Scanning a single IP address
Select option 1 from the menu and enter the IP address you wish to scan. The program will then display a message indicating whether the IP address is infected or not.

## Scanning IP addresses from a CSV file
Select option 2 from the menu and enter the name of the CSV file. The file should contain a list of IP addresses, with one IP address per row. The program will then scan each IP address and display a message indicating whether each IP address is infected or not.

## Scanning IP addresses from a JSON file
Select option 3 from the menu and enter the name of the JSON file. The file should contain a list of IP addresses, with each IP address represented as a string in the list. The program will then scan each IP address and display a message indicating whether each IP address is infected or not.

## Contributing
Pull requests are welcome. For major changes, please open an issue first to discuss what you would like to change.
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →