目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2018-6961 PoC — VMware SD-WAN Edge 命令注入漏洞

来源
关联漏洞
标题: VMware SD-WAN Edge 命令注入漏洞 (CVE-2018-6961)
Description:VMware SD-WAN Edge是美国威睿(VMware)公司的一套网络和安全虚拟化平台。该平台为虚拟机提供部署在普通IP网络硬件上、可编程以及可移动的虚拟网络。 VMware NSX SD-WAN Edge by VeloCloud 3.1.0之前版本中的local Web UI组件存在命令注入漏洞。远程攻击者利用该漏洞在受影响应用程序的上下文中执行任意代码或造成拒绝服务。
Description
VMware NSX SD-WAN command injection vulnerability 
介绍
# CVE-2018-6961 Exploit in Python3 
VMware NSX SD-WAN Edge by VeloCloud prior to version 3.1.0 contains a command injection vulnerability in the local web UI component. This component is disabled by default and should not be enabled on untrusted networks. VeloCloud by VMware will be removing this service from the product in future releases. Successful exploitation of this issue could result in remote code execution.

# Links 
* (CVE Details) https://nvd.nist.gov/vuln/detail/CVE-2018-6961
* (Original Python2 Exploit) https://www.exploit-db.com/exploits/44959/
# Original Exploit Details 
* Exploit Title: Unauthenticated Command Injection vulnerability in VMware NSX SD-WAN by VeloCloud
* Date: 2018-06-29
* Original Exploit Author: paragonsec @ Critical Start
* _Python3 Exploit : R3dxpl0it_
* Credit: Brian Sullivan from Tevora and Section 8 @ Critical Start
* Vendor Homepage: https://www.vmware.com
* Security Advisory: https://www.vmware.com/security/advisories/VMSA-2018-0011.html
* Version: 3.1.1 
* CVE: CVE-2018-6961
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →