Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-6895 PoC — Hikvision Intercom Broadcasting System 操作系统命令注入漏洞

Source
Associated Vulnerability
Title:Hikvision Intercom Broadcasting System 操作系统命令注入漏洞 (CVE-2023-6895)
Description:Hikvision Intercom Broadcasting System是中国海康威视(Hikvision)公司的一个对讲广播系统。 Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK)版本存在操作系统命令注入漏洞,该漏洞源于文件/php/ping.php的参数jsondata[ip]会导致操作系统命令注入。
Readme
python3 CVE-2023-6895.py -u http://target.com -c cmd
File Snapshot

[4.0K] /data/pocs/73371f937d22c531aa2cb1a1a01b1d593eb6214e ├── [2.3K] CVE-2023-6895.py └── [ 53] README.md 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.