Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2011-1473 PoC — OpenSSL 权限许可和访问控制问题漏洞

Source
Associated Vulnerability
Title:OpenSSL 权限许可和访问控制问题漏洞 (CVE-2011-1473)
Description:OpenSSL是OpenSSL团队的一个开源的能够实现安全套接层(SSLv2/v3)和安全传输层(TLSv1)协议的通用加密库。该产品支持多种加密算法,包括对称密码、哈希算法、安全散列算法等。 OpenSSL 0.9.8l之前版本和0.9.8m版本至1.x版本中存在权限许可和访问控制问题漏洞。该漏洞源于网络系统或产品缺乏有效的权限许可和访问控制措施。
Description
A bash script that attempts to flood a server with TLS renegotiations by using the openssl client.  See CVE-2011-1473 and CVE-2011-1473 for details.
Readme
bash-tls-reneg-attack
==============

A bash script that attempts to flood a server with TLS renegotiations by using the openssl client. See CVE-2011-1473 and CVE-2011-1473 for details.

Usage: ./tls-reneg.sh some.hostname.here:port
File Snapshot

[4.0K] /data/pocs/808f4c10673166a0810e678325a3e50196790c0e ├── [ 233] README.md └── [ 960] tls-reneg.sh 0 directories, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.