Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-44569 PoC — Ivanti Automation 安全漏洞

Source
Associated Vulnerability
Title:Ivanti Automation 安全漏洞 (CVE-2022-44569)
Description:Ivanti Automation是美国Ivanti公司的一款应用程序。通过自动化基础设施、云和工作空间自动化,简化了复杂混合环境的管理。 Ivanti Automation 2023.4之前版本存在安全漏洞,该漏洞源于进程间通信不安全,经过本地身份验证的低权限攻击者可以绕过身份验证。
Description
Exploit for Ivanti Automation Manager CVE-2022-44569
Readme
PoC for CVE-2022-44569 for Ivanti Automation Manager, it took Ivanti more than a year to get a fix out.

Ivanti told me it's fixed in Ivanti Automation 2023.4...

https://github.com/rweijnen/ivanti-automationmanager-exploit/assets/7575747/818f11e1-0e86-4d91-8ce1-8949e45cfd8c
File Snapshot

[4.0K] /data/pocs/ae1828a56a26441f57d14acc22375b3d7ef75854 ├── [1.1K] CVE-2022-44569.ps1 ├── [ 16K] LICENSE └── [ 276] README.md 0 directories, 3 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.