目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2024-46982 PoC — Next.js 安全漏洞

来源
关联漏洞
标题: Next.js 安全漏洞 (CVE-2024-46982)
Description:Next.js是Vercel开源的一个 React 框架。 Next.js 13.5.1版本至14.2.10之前版本存在安全漏洞。攻击者利用该漏洞通过发送特制HTTP请求,毒害页面路由器中非动态服务器端呈现路由的缓存。
Description
POC CVE-2024-46982
介绍
# Next.js Cache Poisoning Exploit

This Go script demonstrates a cache poisoning exploit targeting Next.js `_next/image` endpoints by manipulating cache keys and injecting attacker-controlled URLs.

## Features
- Copies a source image file multiple times.
- Generates crafted URLs pointing to an attacker's server.
- Automates sending requests to the vulnerable target endpoint.
- Cleans up temporary files after each iteration.
- Configurable via command-line options.

## Requirements
- Go 1.21 or newer.
- A publicly accessible server (e.g., using `ngrok`).

## Usage
Run the script with the following options:

```bash
go run main.go -s <source-image> -a <attacker-url> -t <target-url> -n <num-copies> -d <delay>
```

## Example

```bash
go run main.go -h 

Usage: exploit [OPTIONS]

Options:
  -s, --source-image  Path to the source image file
  -a, --attacker-url  Base URL of the attacker's server (required)
  -f, --file          Path to the file containing target URLs (one per line)
  -n, --num-copies    Number of image copies to create and upload (default: 5)
  -d, --delay         Delay between requests in seconds (default: 60)
  -h, --help          Show this help message and exit

Example:
  go run exploit.go -s chillguy.jpg -a http://attacker-ngrok-url -t https://victim-url.com -n 10 -d 30
```
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →